CN101064655B - Method of providing a guest terminal with emergency access to a wlan - Google Patents

Method of providing a guest terminal with emergency access to a wlan Download PDF

Info

Publication number
CN101064655B
CN101064655B CN2007101077689A CN200710107768A CN101064655B CN 101064655 B CN101064655 B CN 101064655B CN 2007101077689 A CN2007101077689 A CN 2007101077689A CN 200710107768 A CN200710107768 A CN 200710107768A CN 101064655 B CN101064655 B CN 101064655B
Authority
CN
China
Prior art keywords
emergency
terminal
ssid
lan
associated
Prior art date
Application number
CN2007101077689A
Other languages
Chinese (zh)
Other versions
CN101064655A (en
Inventor
A-L·塞利格南
Original Assignee
阿尔卡特朗讯
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority to EP06360015.9 priority Critical
Priority to EP06360015A priority patent/EP1850532B1/en
Application filed by 阿尔卡特朗讯 filed Critical 阿尔卡特朗讯
Publication of CN101064655A publication Critical patent/CN101064655A/en
Application granted granted Critical
Publication of CN101064655B publication Critical patent/CN101064655B/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/90Services for handling of emergency or hazardous situations, e.g. earthquake and tsunami warning systems [ETWS]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W40/00Communication routing or communication path finding
    • H04W40/02Communication route or path selection, e.g. power-based or shortest path routing
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/20Selecting an access point
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/50Connection management for emergency connections
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/10Small scale networks; Flat hierarchical networks
    • H04W84/12WLAN [Wireless Local Area Networks]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements, e.g. access security or fraud detection; Authentication, e.g. verifying user identity or authorisation; Protecting privacy or anonymity ; Protecting confidentiality; Key management; Integrity; Mobile application security; Using identity modules; Secure pairing of devices; Context aware security; Lawful interception
    • H04W12/005Context aware security
    • H04W12/0051Identity aware
    • H04W12/00516Access point logical identity
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements, e.g. access security or fraud detection; Authentication, e.g. verifying user identity or authorisation; Protecting privacy or anonymity ; Protecting confidentiality; Key management; Integrity; Mobile application security; Using identity modules; Secure pairing of devices; Context aware security; Lawful interception
    • H04W12/08Access security

Abstract

本发明涉及一种为终端(10)提供通过WLAN(2)紧急接入LAN(3)的方法,和执行这种方法的通信系统(1)。 The present invention relates to a method for providing (2) emergency access LAN (3) by a WLAN, and a communication system performing such a method (1) of the terminal (10). LAN(3)包括一个或多个接入点(20)和接入控制功能(21),该接入控制功能容许来自与第一SSID相关联的WLAN(2)用户的数据分组进入LAN(3)。 LAN (3) comprises one or more access points (20) and an access control function (21), allow the access control function from the WLAN SSID associated with the first (2) user data packets into the LAN (3 ). 定义一个或多个专用于允许在紧急情况下接入LAN(3)的紧急SSID。 Defining one or more emergency SSID dedicated to allow access to LAN (3) in case of emergency. 通过从与所选紧急SSID相关联的终端(10)向一个或多个接入点(20)之一发送数据分组来启动紧急呼叫。 Packet to initiate an emergency call by sending to one of the one or more access points (20) from the terminal associated with the selected emergency SSID (10) data. 接入控制功能(21)容许来自与所选紧急SSID相关联的终端(10)的数据分组进入LAN(3)。 Access control function (21) allowing the data from the selected emergency SSID terminal (10) associated with the incoming packet LAN (3). 在容许来自与所选紧急SSID相关联的终端(10)的数据分组进入LAN(3)之后,将其路由到紧急应答点(60)。 After allowing the selected emergency SSID from the associated terminal (10) of data packets into the LAN (3), which is routed to the emergency answering point (60).

Description

为客户终端提供紧急接入WLAN的方法 Providing emergency access to the WLAN client terminal method

技术领域 FIELD

[0001] 本发明涉及一种为终端提供通过无线LAN( = WLAN)进行紧急接入的方法,以及一种执行所述方法的通信系统(LAN =局域网)。 Method [0001] The present invention relates to a method for providing emergency access to a terminal through a wireless LAN (= WLAN), and to a communication system for performing the method (LAN = Local Area Network). 本发明基于优先权申请EP 06360015. 9,在此通过引用包含其内容。 The present invention is based on the priority application EP 06360015. 9, the contents of which incorporated herein by reference.

背景技术 Background technique

[0002] 在诸如宾馆、机场、火车站、会议设施之类的公共领域中以及在诸如公司大厦之类的私有领域中,WLAN正成为日益普及的接入网。 [0002] In public areas such as hotels, airports, train stations, conference facilities and the like as well as in the private sector, such as building the company's class, WLAN is becoming increasingly popular in the access network. 公司在其办公场所安装WLAN,从而允许他们的职员自由移动,同时提供了与诸如GSM(=全球移动通信系统)之类的传统无线网络相比相对较高的带宽。 The company installed its office WLAN, allowing their staff to move freely, while providing a relatively high compared to traditional wireless networks such as GSM (= Global System for Mobile Communications) and the like bandwidth.

[0003] 过去几年中,另一个发展是越来越多地利用基于IP(IP =互联网协议)的数据网络来传输诸如语音和视频之类的实时数据。 [0003] In the past few years, another development is increasingly being used to transmit real-time data such as voice and video and the like based on IP (IP = Internet Protocol) data network. 已经引入了若干种处理VoIP应用的标准,诸如编解码标准G. 711和G. 729以及传输协议RTP (VoIP =基于IP的语音;COdeC =编码/解码;RTP =实时传送协议)。 Several standards have been introduced VoIP application process, such as a codec standards G. 711 and G. 729, and the transport protocol RTP (VoIP = Voice over IP; COdeC = encoding / decoding; RTP = Real-time Transport Protocol).

[0004] 到最近为止,订户只将WLAN网络用于非实时应用,例如将他们的浏览器连接到互联网。 [0004] Until recently, subscribers only WLAN network for non-real-time applications, such as their browser to connect to the Internet. 然而,还要能处理诸如VoWLAN(=基于WLAN的语音)之类的实时应用的任务给目前的WLAN提出了挑战。 However, it also can handle tasks such as real-time applications VoWLAN (= voice over WLAN) and the like to the current WLAN challenges. 毕竟,VoWLAN解决方案的订户期望获得与他们的传统PSTN(=公共交换电话网)电话或GSM移动电话所能获得的相同的语音质量、可靠性和功能性。 After all, subscribers VoWLAN solutions expect the same voice quality with their traditional PSTN (= Public Switched Telephone Network) phone or a GSM mobile phone that can be obtained, reliability and functionality.

发明内容 SUMMARY

[0005] 本发明的目的是准许客户终端出于紧急目的接入电信服务。 [0005] The object of the present invention is to permit access to the client terminal for the purpose of emergency telecommunication services.

[0006] 本发明的目的通过一种为终端提供通过WLAN紧急接入LAN的方法来实现,该LAN包括一个或多个接入点和接入控制功能,该接入控制功能容许来自与第一SSID相关联的WLAN用户的数据分组进入该LAN ;其中该方法包括以下步骤:定义一个或多个专用于允许在紧急情况下接入LAN的紧急SSID,通过从与所选紧急SSID相关联的终端向一个或多个接入点之一发送数据分组来启动紧急呼叫,以及通过接入控制功能容许来自与所选紧急SSID相关联的终端的数据分组进入该LAN(SSID =服务设置标识符)。 [0006] The object of the present invention by a method of providing a terminal achieved by a method for the WLAN emergency access a LAN, the LAN comprising one or more access points and an access control function, the access control function from the first allowable WLAN SSID associated user data packets entering the LAN; wherein the method comprises the steps of: defining one or more emergency SSID dedicated to allow access to the LAN in an emergency case, from the terminal with the selected emergency SSID associated transmitting data to a packet one or more access points to initiate an emergency call, and by allowing data access control function from the terminal with the selected emergency SSID associated packet enters the LAN (SSID = service set identifier).

[0007] 终端与SSID进行关联的意思是:终端在通过WLAN的空中接口的通信中通告所述SSID0优选地,在通过空中接口的通信的MAC层部分中通告SSID。 [0007] SSID and associate terminal means: the terminal advertisement SSID0 preferably in communication over the air interface of the WLAN, the SSID is advertised in the MAC layer part of the communication over the air interface. 这意味着,终端在通过空中接口的通信期间向接入点发信号通知SSID,该SSID与终端相关联。 This means that the terminal notifies SSID, the SSID associated with the terminal to the access point signal during the communication over the air interface.

[0008] 在本发明的优选实施例中,在容许来自与所选紧急SSID相关联的终端的数据分组进入LAN之后,将其路由到紧急应答点。 [0008] In a preferred embodiment of the present invention, from the allowable packet data to the selected emergency SSID associated terminal after entering the LAN, connect it to route emergency answering point.

[0009] 本发明提出一种如何在紧急情况下为包括客户终端和授权终端在内的终端提供通过WLAN安全并可靠地接入LAN的简单方法。 [0009] The present invention provides a proposed how to provide a simple method by LAN WLAN security and reliably in an emergency access terminal comprising a client terminal and a terminal including the authorization.

[0010] 针对建立紧急呼叫,移动终端的用户不局限于公共可接入的LAN,而是还可使用公共的或私有的LAN,例如公共校园网络。 [0010] for establishing an emergency call, the user of the mobile terminal is not limited to publicly accessible the LAN, but may also be public or private use of the LAN, such as a common campus network. 因此,甚至正常情况下未被授权接入具有受限接入权的网络的客户终端也可经由该网络建立紧急呼叫。 Therefore, even under normal circumstances not authorized to access the network has restricted access rights of the client terminal may also establish an emergency call via the network.

[0011] 而且,本发明对将来接受VoWLAN技术做出了极大的贡献,因为本发明向WLAN提供了在紧急情况下用于提供连接性和可靠性的手段。 [0011] Further, the present invention is for the future acceptance of VoWLAN technology has made great contribution, since the present invention provides a means for providing in case of emergency and the connection reliability to the WLAN. 在美国,联邦通信委员会( = FCC)要求VoIP服务提供商确保所有互连的VoIP呼叫都提供完全的9-1-1能力,其中在美国和加拿大9-1-1是官方的国家紧急号码。 In the United States, the Federal Communications Commission (= FCC) required for VoIP service providers to ensure that all interconnected VoIP 9-1-1 calls are provided full capacity, which in the United States and Canada 9-1-1 is the official national emergency number. 在许多欧洲国家也讨论了类似的要求,那里官方的国家紧急号码例如是1-1-2。 In many European countries also discussed a similar request, where the official national emergency number is 1-1-2, for example. 通过本发明,任何拨打中心紧急号码9-1-1和/或1-1-2的呼叫者确信可以被可靠地转接到将从其组织帮助的PSAP (=紧急应答点)。 By the present invention, any caller dialing the central emergency number 9-1-1 and / or 1-1-2 can be sure to be reliably transferred from the organization to help PSAP (= emergency answering point).

[0012] 为了对与紧急呼叫相关的数据分组进行路由,多种方法可供使用。 [0012] In order for the data packets related to the emergency call routing, various methods are available. 由此,可以基于诸如可用的基础设施、业务负载等等实际情形和环境选择适当的方法。 Thus, an appropriate method may be selected based such as available infrastructure, traffic load, and so the actual situation and the environment.

[0013] 通过从属权利要求所指示的本发明的实施例实现了其他优点。 [0013] Embodiments of the present invention indicated by the dependent claims other advantages are achieved.

[0014] 根据本发明的另一优选实施例,希望启动紧急呼叫的终端可通过DHCP询问来接收相应的数据分组要发送到的目的地地址(DHCP=动态主机配置协议)。 [0014] According to another preferred embodiment of the present invention, it is desirable to start an emergency call terminal may receive the corresponding data packet destination address (DHCP = Dynamic Host Configuration Protocol) to be sent to the DHCP request. 由此,终端用经由DHCP请求接收的目的地地址对来自与所选紧急SSID相关联的终端的数据分组进行编址。 Thus, the terminal with a destination address via the DHCP request received from the selected emergency SSID to the data packets associated with the terminal be addressed.

[0015] 可以通过DHCP服务器来实现DHCP概念,优选地,DHCP服务器被实现为端口监控程序(daemon)并且在UDP端口67上等待客户端请求(UDP =用户数据报协议)。 [0015] The DHCP concept may be realized by a DHCP server, preferably, the DHCP server is implemented as a daemon (daemon) and waits on UDP port 67 client requests (UDP = User Datagram Protocol). DHCP服务器的配置文件包括与待分发的地址池有关的信息以及与网络相关的参数有关的附加数据。 DHCP server configuration file includes information and additional data related to the network parameters associated with the address pool to be distributed related. 由此,经常改变地址的终端可以不需要容易出错的预配置。 Thus, frequent changes in the terminal address may not require pre-configured error-prone. 终端仅仅建立到WLAN的连接并且向DHCP服务器请求所有相关的参数。 Only the terminal connection to a WLAN and requests all relevant parameters from the DHCP server.

[0016] 接着,终端将来自与所选紧急SSID相关联的终端的数据分组发送到呼叫管理器的IP地址和端口,该呼叫管理器将与紧急呼叫相关联的数据分组路由到PSAP。 [0016] Subsequently, the terminal transmits data packets from the terminal associated with the selected emergency SSID to the call manager's IP address and port, the call manager routes the emergency call data packets associated to the PSAP. 优选地,终端从DHCP服务器接收呼叫管理器的与地址相关的数据。 Preferably, the terminal receives the call manager from the DHCP server data associated with the address.

[0017] 优选地,终端请求特殊的DHCP选项,该选项将为终端提供目的地地址,例如呼叫管理器的IP地址。 [0017] Preferably, the terminal requests a particular DHCP option that will provide the destination address of the terminal, such as IP address of the call manager. 终端可向DHCP服务器发送与DHCP方法相关联的消息以请求紧急呼叫的数据分组要发送到目的地地址。 The terminal may send to the DHCP server and DHCP messages associated method of requesting an emergency call to a data packet to be transmitted to the destination address. 在从DHCP服务器接收到目的地地址之后,与所选紧急SSID相关联的终端将所接收的IP地址设置为来自与所选紧急SSID相关联的终端的数据分组的目的地地址。 After receiving the destination address from the DHCP server, the terminal associated with the selected emergency SSID to the received IP address to the destination address provided from the terminal with the selected emergency SSID associated with the data packets. 优选地,目的地地址包括呼叫管理器的IP地址以及呼叫管理器正在监听的端□。 Preferably, the destination address comprises the IP address of the call manager and the call manager is listening end □.

[0018] 根据另一个优选实施例,与所选紧急SSID相关联的终端用任意IP地址对来自与所选紧急SSID相关联的终端的数据分组进行编址。 [0018] According to another preferred embodiment, the terminal with the selected emergency SSID associated with an arbitrary IP address from the data packet with the selected emergency SSID associated terminal be addressed. 在到达WLAN的AP时,与AP相关联的NAT功能将该数据分组的地址修改成预定的目的地地址(AP =接入点)。 On the arrival of the WLAN AP, AP with the NAT function associated with the address of the data packet is modified to a predetermined destination address (AP = Access Point). 在WLAN基础设施中,使用目的地NAT(=网络地址翻译)将与所选紧急SSID相关联的数据分组重定向到目的地地址。 The WLAN infrastructure, using a destination NAT (= Network Address Translation) the data associated with the selected emergency SSID associated to the destination address of the redirected packet. NAT是在IP网络中用另一个IP地址来替换数据分组的第一IP地址的方法。 NAT is a method to replace the IP address of the first data packet with another IP address in the IP network. 例如,通过NAT功能将与所选紧急SSID相关联的数据分组重定向到呼叫管理器的目的地地址。 For example, redirected to the destination address of the call manager and the data packet associated with the selected emergency SSID via the NAT function.

[0019] 根据又一个优选实施例,用预定的多播地址对来自与所选紧急SSID相关联的终端的数据分组进行编址。 [0019] According to yet another preferred embodiment, it is addressed to the selected emergency SSID from the terminal data packets associated with the predetermined multicast address. 这可以在终端处完成,或者可以在进入WLAN时由网络节点完成,例如在AP处完成。 This can be done at the terminal, or may be performed by a network node when entering WLAN, e.g. completed at the AP. 优选地,多播地址是呼叫管理器已经加入的多播组的多播地址,并且包括呼叫管理器正在监听的预定义的端口。 Preferably, the multicast address is a multicast address of the multicast group the call manager has joined and comprises a predefined call manager is listening on the port.

[0020] 优选地,RTP流的目的地地址是呼叫管理器已经加入的多播组的多播地址。 [0020] Preferably, the destination address of the RTP flow is the multicast address of the multicast group the call manager has joined. 因此,所有网络设备都应该支持多播。 Therefore, all network devices should support multicast. 一旦终端与特定的紧急SSID相关联,它可以注册到多播组并且接着基于它已经选择的SSID来启动RTP流,其将确定语音的编码/解码(=vocodeH声码器))和组帧。 Once the terminal with a specific emergency SSID associated with, it can be registered to the multicast group and then initiate RTP streams based on its already selected SSID, it will determine the voice encoding / decoding (= vocodeH vocoder)) and framing. 呼叫管理器直接接收数据分组而无任何类型的信令,即,来自与所选紧急SSID相关联的终端的数据分组的路由是预设置的并且连接是预建立的。 The call manager receives the data packets directly without any kind of signaling, i.e., with the selected emergency SSID from the routing data packets of the terminal is associated with a pre-arranged and pre-established connection. 可以通过诸如PSTN之类的常规电话网,将与紧急呼叫相关的数据分组路由到PSAP。 By conventional telephone network such as the PSTN or the like, the emergency call-related data packets routed to the PSAP.

[0021] 在另一个优选实施例中,根据本发明的呼叫信令遵从例如SIP(SIP =会话启动协议)、H. 323等的所有类型的呼叫处理客户端。 [0021] In another preferred embodiment, the call signaling according to the present invention, for example, call handling clients comply with all types of SIP (SIP = Session Initiation Protocol), H. 323 or the like. 所提出的方法完全是不考虑协议的。 The proposed method is simply not consider the agreement. 终端只需向呼叫管理器发送RTP分组。 Terminal need only send RTP packets to the call manager. 不存在编解码或组帧协商。 Absent or codec framing negotiation. 呼叫管理器总是在特定的端口上监听紧急服务请求。 Call management always listens to emergency service requests on a specific port. 优选地,呼叫管理器经由预建立的链路从与所选紧急SSID相关联的终端接收数据分组,并且将与紧急呼叫相关的数据分组路由到紧急应答点。 Preferably, the call manager receives the data from the terminal with the selected emergency SSID associated packet via a pre-established link, and the emergency call routing data packets related to the emergency answering point. 数据分组,例如RTP分组,通过LAN以及相关联的网络并独立于特定的信令方案来传输,无需进行编码或解码并且无需组帧协商。 Data packet, RTP packet e.g., through a LAN and a network associated signaling and independent of the specific programs transmitted without encoding or decoding and without framing negotiation.

[0022] 根据本发明的优选实施例,一旦已经容许来自与所选紧急SSID相关联的终端的数据分组进入LAN网络,就将其路由到紧急服务或紧急应答点,例如PSAP。 [0022] According to a preferred embodiment of the present invention, once the terminal has been allowed data packets from the selected emergency SSID associated network into the LAN, it will be routed to the emergency service or the emergency answering point, e.g. PSAP. 优选地,由PBX或者呼叫管理器来执行该路由。 Preferably, the routing is performed by a PBX or the call manager. 一旦呼叫管理器接收紧急呼叫,则呼叫管理器建立关于发起呼叫的地理区域的呼叫。 Once the call manager receives an emergency call, the call manager establishes a call for the initiation of the geographical area of ​​the call. 将进入LAN的来自与紧急SSID相关联的终端的所有数据分组路由到紧急服务或紧急应答点,优选地,其不依赖于数据分组原先所指示的目的地地址。 Routing all data packets entering the LAN from the terminal associated with the emergency SSID associated to the emergency service or the emergency answering point, preferably, it does not rely on a destination address of the data packet originally indicated. 仅出于建立紧急呼叫的目的,准许来自与紧急SSID相关联的终端的数据分组进入LAN。 Purposes only, the emergency call is established, permission data from the terminal associated with the emergency SSID incoming packet LAN.

[0023] 按照本发明,所述LAN可以是可经由两个或多个WLAN接入的LAN。 [0023] According to the present invention, said LAN may be two or more WLAN access via a LAN. WLAN中的每一个均可以用作接入LAN环境的接入网并且与单独的SSID相关联。 Each WLAN can be used as the access network and access to the LAN environment associated with a separate SSID. 于是,可以通过例如正常SSID这样的第一SSID经由第一WLAN接入LAN,以及通过例如紧急SSID这样的第二SSID经由第二WLAN接入LAN。 Thus, it can be accessed via a first SSID, for example, via a first WLAN SSID normally the LAN, such as an emergency SSID and by such a second SSID WLAN access via a second LAN.

[0024] 相应地,本发明还提出一种为多个用户终端提供接入可经由至少两个WLAN接入的LAN的方法,这些用户终端包括例如属于公司的用户这样的授权用户的终端以及客户用户的终端。 [0024] Accordingly, the present invention also provides a plurality of user terminals to provide access to the LAN via the at least two WLAN access method, the user terminal comprising a user belonging to the authorized user, for example, companies such terminals and customer terminal users. 所述第一WLAN为与第一SSID相关联的数据分组提供对LAN的接入。 The first WLAN provides access to the LAN for data packets associated with the first SSID. 使用加密方法对来自第一WLAN的数据分组进行过滤,以仅仅使来自授权用户的终端的经适当加密的数据分组能够进入LAN而丢弃来自其他终端的数据分组。 Using encryption of the data packet from the first WLAN are filtered to only authorized users so that from the terminal duly encrypted data packets can be dropped into the LAN data packets from other terminals. 此外,至少一个第二WLAN为源自与第二SSID相关联的所有用户的终端的数据分组提供对LAN的接入。 Further, as derived from the at least one second WLAN user terminal and all the data associated with a second SSID provide access to the LAN packets. 对来自第二WLAN的数据分组进行过滤,以仅允许携带VoIP紧急呼叫的数据分组进入LAN。 Data packets from the second WLAN are filtered to allow only carry packet data into the VoIP emergency call LAN.

[0025] 因为与紧急SSID相关联的客户端可能是客户用户,所以不能设置加密或者认证。 [0025] Because the client associated with the emergency SSID may be a client user can not set the encryption or authentication. 为了防止对紧急SSID的攻击或者未授权地使用紧急SSID,设置了若干安全手段。 In order to prevent attacks on emergency SSID or unauthorized use of emergency SSID, set up a number of security measures. 根据本发明的优选实施例,可以接受每个用户一个带宽约定。 According to a preferred embodiment of the present invention, each user can accept a bandwidth regulations. 如果客户端发送超过所允许的带宽的分组,则分组会被丢弃。 If the client sends more than the allowed bandwidth of the packet, the packet is discarded. 根据本发明的另一个优选实施例,利用目的地NAT,人们可确信分组的目的地地址是呼叫管理器IP地址。 According to another preferred embodiment of the present invention, using the destination the NAT, one can be sure that the destination address of the packet call manager IP address. 这防止了客户端向其他设备发送分组。 This prevents the client sends packets to other devices. 存在这种能够根据协议、服务、所使用的带宽、或者待过滤的数据分组的源或目的地IP地址来过滤分组的设备,将只允许进行语音通信。 The presence of such protocols is possible, the service, the used bandwidth, or the data packets to be filtered source or destination IP address to the packet filtering device, it will only allow voice communication.

[0026] 根据本发明的另一个优选实施例,对WLAN的接入被限制在来自与第一SSID相关联的终端的数据分组,即,源自WLAN的授权用户的数据分组,以及来自与由WLAN的AP所广播的紧急SSID相关联的终端的数据分组。 [0026] According to another preferred embodiment of the present invention, access to the WLAN is restricted to data packets from the first terminal SSID associated, i.e., from an authorized user of the WLAN data packets from and by the the WLAN AP data terminals broadcast the emergency SSID associated with the packet. 可以通过应用防火墙规则和/或通过使用接入控制列表(=ACL)和/或私有虚拟局域网(=PVLAN)来强制执行接入限制。 By applying firewall rules and / be enforced through the use of access control lists (= ACL) and / or private virtual local area network (= PVLAN) or access restrictions. 接入控制功能只容许语音业务进入WLAN也是可能的。 Access control function allows only voice services into the WLAN is also possible.

[0027] 在紧急服务中要有的一个重要信息是启动紧急呼叫的用户的位置。 [0027] An important information to have is the launch customer of the location of an emergency call in the emergency services. 在DHCP跟踪器的帮助下并且通过使用驻留在定位服务器上的web (网络)服务,可将该信息传输给PSAP0 With the help of a DHCP tracker and by using the web server residing on the positioning (network) service, transmits the information to the PSAP0

[0028] 本发明的目的还通过一种对通过WLAN紧急接入LAN的终端进行定位的方法来实现,该LAN包括一个或多个接入点和接入控制功能,该接入控制功能容许来自与第一SSID相关联的WLAN用户的数据分组进入该LAN,其中该方法包括以下步骤:定义一个或多个专用于允许在紧急情况下接入LAN的紧急SSID,通过从与所选紧急SSID相关联的终端向一个或多个接入点之一发送数据分组来启动紧急呼叫,通过接入控制功能容许来自与所选紧急SSID相关联的终端的数据分组进入该LAN,以及将关于终端位置的定位信息传输给呼叫管理器。 [0028] The object of the present invention are also achieved by a method for positioning by WLAN terminal emergency access a LAN, the LAN comprising one or more access points and an access control function, the access control function from the allowable data packets with the first SSID of the WLAN associated with a user enters the LAN, wherein the method comprises the steps of: defining one or more emergency SSID dedicated to allow access to the LAN in an emergency case, from the correlation with the selected emergency SSID transmit data to the terminal associated with one access point to one or more packets to initiate an emergency call, allowed to pass through the access control function from the selected emergency SSID associated data terminal to the packet enters the LAN, and the end position on Location information is transmitted to the call manager.

[0029] 在优选的实施例中,终端将带有定位信息的S0AP(S0AP =简单目标接入协议)消息发送给定位服务器或呼叫管理器。 S0AP [0029] In a preferred embodiment, the terminal with the location information (S0AP = Simple Object Access Protocol) message to the location server or the call manager. 如果带有定位信息的SOAP消息被发送给定位服务器,则必须将定位信息传送给呼叫管理器。 If the SOAP message with the localization information is sent to the location server, location information must be transmitted to the call manager. 这可以由呼叫管理器轮询用以提供定位信息的定位服务器来完成,或者由定位服务器在从终端接收到定位信息之后将定位信息送入(push)呼叫管理器来完成。 This may be polled by a call manager server provide positioning information for positioning to complete, or by a location server from the terminal after receiving the location information into location information (push) to complete the call manager.

[0030] 根据另一个优选实施例,终端将带有定位信息的DHCP更新消息发送给DHCP服务器。 DHCP update message [0030] According to another preferred embodiment, the terminal with the location information is transmitted to the DHCP server. 于是,DHCP服务器向定位服务器或呼叫管理器发送带有定位信息的SOAP消息。 Thus, DHCP server sends a SOAP message with the positioning information to the positioning server or the call manager. 此外,如果带有定位信息的SOAP消息被发送给定位服务器,则必须将定位信息传送给呼叫管理器。 Further, SOAP message if location information with the location server is transmitted to, location information must be transmitted to the call manager. 这可以由呼叫管理器轮询用以提供定位信息的定位服务器来完成,或者通过定位服务器在从终端接收到定位信息之后将定位信息送入呼叫管理器来完成。 This may be polled by a call manager server provide positioning information for positioning is accomplished, the location server or by the terminal after receiving the location information from the positioning information into the call manager to complete.

[0031] 在优选实施例中,对用于紧急呼叫的特定的紧急SSID进行了定义,同时还对诸如编解码之类的特定的能力进行了定义。 [0031] In a preferred embodiment, specific emergency SSID for emergency calls is defined, but also on the ability of such specific codec or the like is defined. 所定义的紧急SSID中的每一个均与不同的能力相关联,例如与不同的编解码相关联。 Emergency SSID defined in each of the different capabilities associated, for example, associated with different codecs. 因此,基于将用于呼叫的参数,可以配置若干紧急SSID,例如一个紧急SSID用于G. 711而另一个紧急SSID用于G. 729。 Thus, based on the parameters for the call, an emergency SSID can be configured a number of, for example, one emergency SSID for G. 711 and another emergency SSID for G. 729. 终端的用户或终端的智能可以基于相关联的能力来选择紧急SSID。 Intelligent user terminal or terminals can be selected emergency SSID associated with the capability based. 可以从紧急SSID的广播中提取与特定的紧急SSID相关联的能力有关的信息。 It can extract information about the capabilities of a particular emergency SSID associated with the emergency SSID from broadcasting in. 与能力有关的信息可包含在SSID自身中,或者可以从LAN的单独的信息单元获取。 Information about the capabilities may be contained in the SSID itself or may be acquired from the LAN separate information unit. 呼叫管理器接收在RTP头中与数据分组的处理有关的信息。 The call manager receives information about the process in the RTP header of the data packet.

[0032] 优选地,通过发送与基于WLAN的语音电话呼叫相关联的数据分组来启动紧急呼口q。 [0032] Preferably, an emergency call to start opening the packet by sending a data call q associated WLAN based voice telephony. VoWLAN使得能够在移动环境中实现VoIP。 VoWLAN enables VoIP in a mobile environment. 它依赖于基于IEEE 802. 11的WLAN,其主要用在建筑物内。 It relies on IEEE WLAN 802. 11, which is mainly used in the building. VoWLAN包括诸如基于象SIP或H. 323这样的呼叫信令协议的VoIP之类的途径与根据支持服务质量(=QoS)的802.1le版的802. 11的WLAN的集成。 VoWLAN comprises pathway such as SIP or H. Such call signaling protocol 323 VoIP or the like in accordance with the integrated WLAN based quality of service support (= QoS) 802. 11 802.1le plate. 此外,直接连接到UMTS网络是可能的,并且因此超出基于无线的LAN的范围的VoWLAN服务的扩展是可能的。 Further, direct connection to the UMTS network is possible, and thus extends beyond the VoWLAN services based on wireless LAN range are possible.

[0033] 根据本发明的另一个优选实施例,终端使用802.1le或WMM方法来指示与紧急呼叫相关的数据流拥有语音紧急优先级(WMM = WiFi多媒体;WiFi =无线保真度)。 [0033] According to another preferred embodiment of the present invention, the terminal uses 802.1le or WMM method to indicate that the data stream associated with the emergency call has a voice emergency priority (WMM = WiFi Media; WiFi = Wireless Fidelity). 通过使用TSPEC(=业务规范)来协商对呼叫进入网络的容许控制。 To negotiate the call admission control for entering the network through the use of TSPEC (= traffic specification). 站点,这里是终端,指明其业务流需求(数据速率、延迟限制、分组大小以及其他)并且通过发送ADDTS(=添加TSPEC)管理动作帧来请求QAP ( = QoS接入点)以创建TSPEC。 Site, this is a terminal, indicating its traffic flow requirements (data rate, delay bounds, packet size, and others) and requests by sending ADDTS (= add TSPEC) management action frame QAP (= QoS Access Point) to create a TSPEC. QAP基于当前的一组所发出的TSPEC来计算现有的负载。 QAP calculates the existing load based on TSPEC emitted current set. 基于当前的条件,QAP可能接受或者拒绝新的TSPEC请求。 Based on current conditions, QAP may accept or reject the new TSPEC request. 如果TSPEC被拒绝,则不允许QoS站点( = QSTA)内的高优先级接入类使用高优先级接入参数,相反它必须替代使用QoS级别参数。 If the TSPEC is denied, allowed QoS station (= QSTA) a high priority access category inside the high priority access parameters, instead it must use QoS level parameters alternative.

[0034] 而且,可以使用抢先权(preemption)来优先选择紧急呼叫。 [0034] Furthermore, the use of pre-emption (preemption) to preferentially select emergency call. 当终端的用户拨打诸如紧急号码之类的优先号码时,呼叫方可能期望WLAN用比正常订户通话更高的优先级来处理紧急呼叫。 When the user terminal dials a priority number such as an emergency number or the like, the caller may be desirable to use WLAN subscriber calls a higher than normal priority handling emergency calls. AP和/或呼叫管理器识别紧急呼叫的优先级状态,并且占用分配给比紧急呼叫的优先级低的呼叫的资源以优先选择紧急呼叫。 AP and / or priority status of the call manager identifies an emergency call, and occupies the resources allocated to lower priority than the emergency call to call the emergency call priority selection.

[0035] 一般地,可以使用抢先权和TSPEC机制来向与紧急呼叫相关联的数据分组保证特定的QoS。 [0035] In general, pre-emption may be used and TSPEC mechanisms to the emergency call data associated with a packet to ensure that a particular QoS.

[0036] 优选地,终端包括诸如屏幕之类的显示单元,其中在终端检测到紧急SSID可用的时候,例如将字母“S0S”或描绘警察巡逻灯的图标之类的特定的符·号显示在软屏幕或拨号盘上。 [0036] Preferably, the terminal includes a display unit such as a screen, wherein the terminal detects when an emergency SSID is available, for example, the letter "S0S" or depicted in police patrol lamp icons such specific symbol-number is displayed or soft screen dial pad on. 作为替代,在紧急SSID可用的情况下,从终端的扬声器重复播放例如叮当声或者特定的声音之类的声学信号。 Alternatively, in case of an emergency SSID is available, for example, an acoustic signal repeat class jingle or a specific sound from the speaker of the terminal. 包括特定的图标或声音的数据文件可被存储在终端的存储器中,并且可以从存储器中获取并在终端处输出以通知终端的用户对WLAN的紧急接入是可用的。 Comprising the specific icon or sound data files may be stored in memory of the terminal, and may acquire from the memory to notify a user terminal and outputs an emergency access to the WLAN is available at the terminal.

[0037] 根据本发明的另一个优选实施例,一个或多个接入点中的至少之一对一个或多个紧急SSID进行广播。 [0037] According to another preferred embodiment of the present invention, one or more access points at least one of the one or more emergency SSID broadcast. 终端检测一个或多个广播的紧急SSID中的至少之一,并从该至少一个检测到的紧急SSID中选择紧急SSID。 Detecting at least one of the terminal emergency SSID broadcast by one or more, and the emergency SSID selected from the at least one detected emergency SSID in.

[0038] 本发明的目的还通过一种用于为终端提供通过WLAN紧急接入LAN的通信系统来实现,该通信系统包括接入控制功能,该接入控制功能容许来自WLAN的授权用户的携带第一SSID的数据分组进入LAN,该通信系统包括:适于接收来自与从至少一个检测到的紧急SSID中选择的紧急SSID相关联的终端的数据分组的接口;适于将从与所选紧急SSID相关联的终端接收到的数据分组转发到接入控制功能的控制单元,其中接入控制功能容许来自与所选紧急SSID相关联的终端的数据分组进入LAN,并且该通信系统适于在容许与所选紧急SSID相关联的数据分组进入WLAN之后,将其路由到紧急应答点。 [0038] The object of the present invention is further achieved by a terminal for providing emergency access over a WLAN to achieve LAN communication system, the communication system comprises an access control function, the access control feature allows authorized users from the WLAN carrying a first data packet enters the SSID LAN, the communication system comprising: an interface adapted to receive data packets from a terminal associated with an emergency SSID selected from the at least one detected emergency SSID in; adapted from the selected emergency terminal SSID associated with the received data packet to the access control function of the control unit, wherein the access control feature allows data packets from a terminal associated with the selected emergency SSID to the LAN enters, and the communication system is adapted to allow after the selected emergency SSID associated with the data packet enters the WLAN, it is routed to the emergency answering point.

[0039] 优选地,当在终端处已经用在终端处经由DHCP请求接收的目的地地址对数据分组进行编址的情况下,该通信系统适于对来自与所选紧急SSID相关联的终端的数据分组进行路由。 [0039] Preferably, in the case where the terminal has been used at the terminal via a DHCP request received a destination address of the data packets addressed, the communication system is adapted from the terminal with the selected emergency SSID associated route data packets.

[0040] 根据另一个优选实施例,该通信系统还包括NAT功能,其适于在WLAN基础设施中将来自与所选紧急SSID相关联的终端的数据分组重定向到预定的目的地地址,例如呼叫管理器的IP地址。 [0040] According to another preferred embodiment, the communication system further comprises a NAT function, which is adapted from the WLAN infrastructure in a selected emergency SSID associated with the terminal data packet is redirected to a predetermined destination address, e.g. IP address of the call manager.

[0041] 根据又一个优选实施例,当已经在终端处用呼叫管理器的IP地址作为目的地地址对数据分组进行编址的情况下,该通信系统对来自与所选紧急SSID相关联的终端的数据分组进行路由,其中该IP地址是多播地址。 [0041] According to yet another preferred embodiment of the terminal, has been used in the case where the call manager IP address of the data packet is addressed as the destination address in the terminal, from the communication system with the selected emergency SSID associated routing data packets, wherein the IP address is a multicast address.

[0042] 本发明的目的还通过一种用于为终端提供通过WLAN紧急接入LAN的通信系统来实现,该通信系统包括接入控制功能,该接入控制功能容许来自WLAN的授权用户的携带第一SSID的数据分组进入LAN,该通信系统包括:适于接收来自与从至少一个检测到的紧急SSID中选择的紧急SSID相关联的终端的数据分组的接口;适于将接收的来自与所选紧急SSID相关联的终端的数据分组转发到接入控制功能的控制单元,其中接入控制功能容许来自与所选紧急SSID相关联的终端的数据分组进入LAN ;以及适于在紧急专用的(emergency-specific)端口上持续地监听紧急请求的呼叫管理器。 [0042] The object of the present invention is further achieved by a terminal for providing emergency access over a WLAN to achieve LAN communication system, the communication system comprises an access control function, the access control feature allows authorized users from the WLAN carrying a first data packet enters the SSID LAN, the communication system comprising: an interface adapted to receive data packets from the terminal associated with the emergency SSID selected from the at least one detected emergency SSID in; and is adapted to receive from the data packets selected emergency SSID associated to the terminal is forwarded to the control unit of the access control function, wherein the access control feature allows data from the selected emergency SSID associated packet terminal enters the LAN; emergency and adapted to specific ( emergency-specific) listen continuously requests an emergency call manager port.

[0043] 而且,本发明的目的还通过一种用于为终端提供通过WLAN紧急接入LAN的通信系统来实现,该通信系统包括接入控制功能,其容许来自WLAN的授权用户的带有第一SSID的数据分组进入LAN ;该通信系统包括:适于接收来自与从至少一个检测到的紧急SSID中选择的紧急SSID相关联的终端的数据分组的接口,适于将接收的来自与所选紧急SSID相关联的终端的数据分组转发到接入控制功能的控制单元,其中接入控制功能容许来自与所选紧急SSID相关联的终端的数据分组进入LAN,而且,接入控制功能适于关于服务和/或带宽和/或目的地而将对LAN的接入限制到来自与所选紧急SSID相关联的终端的数据分组。 [0043] Moreover, further object of the present invention is achieved by a terminal for providing emergency access over a WLAN to achieve LAN communication system, the communication system includes access control functions, which allows an authorized user from the WLAN with the first a data packet enters the SSID of the LAN; the communication system comprising: an interface adapted to receive data packets from a terminal associated with an emergency SSID selected from the at least one detected emergency SSID in, and adapted to receive selected from terminal data packets associated with an emergency SSID forwarded to the control unit to access control function, wherein the access control functions allow the selected emergency SSID from the terminal data packets entering the LAN associated, and, on the access control function is adapted service and / or bandwidth and / or destination LAN access will be restricted to data from the selected emergency SSID associated packet terminal.

[0044] 同样,本发明的目的还通过一种用于对通过WLAN紧急接入LAN的终端进行定位的通信系统来实现,该通信系统包括接入控制功能,其容许来自WLAN的授权用户的带有第一SSID的数据分组进入LAN ;该通信系统包括:适于接收来自与从至少一个检测到的紧急SSID中选择的紧急SSID相关联的终端的数据分组的接口;适于将接收的来自与所选紧急SSID相关联的终端的数据分组转发到接入控制功能的控制单元,其中接入控制功能容许来自与所选紧急SSID相关联的终端的数据分组进入LAN ;以及适于接收终端的定位信息并将与定位信息相关联的数据转发给紧急应答点的定位服务器和/或呼叫管理器。 [0044] Also, the object of the present invention is further achieved by a terminal for emergency access to the LAN via the WLAN communication positioning system is achieved, the communication system includes access control functions, which allows an authorized user from the WLAN band a first data packet enters the SSID of the LAN; the communication system comprising: an interface adapted to receive data packets from a terminal associated with an emergency SSID selected from the at least one detected emergency SSID in; and is adapted to receive from selected emergency SSID terminal data packets are forwarded to the associated access control function of the control unit, wherein the access control feature allows data packets from a terminal associated with the selected emergency SSID to the LAN enters; positioned and adapted to receiving terminals information and data associated with the location information to an emergency answering point forwards a location server and / or the call manager.

[0045] 优选地,该通信系统还包括发送器,其适于向终端广播专用于允许在紧急情况下接入LAN的一个或多个紧急SSID。 [0045] Preferably, the communication system further comprises a transmitter which is adapted to allow a terminal dedicated to access to a broadcast LAN in an emergency situation or more emergency SSID.

[0046] 附图说明 [0046] BRIEF DESCRIPTION OF DRAWINGS

[0047] 通过结合附图来阅读下面对目前优选的示例性实施例的详细描述,将更好地理解本发明的这些以及其他特征和优点,其中: [0047] by reading the following detailed description of presently preferred exemplary embodiments in conjunction with the following drawings, it will be better understood and other features and advantages of the present invention, wherein:

[0048] 图1是根据本发明的实施例的终端接入LAN的框图。 [0048] FIG. 1 is a block diagram of a LAN access terminal according to an embodiment of the present invention.

[0049] 图2是示出根据本发明的实施例的终端接入LAN的消息流序列。 [0049] FIG. 2 is a diagram illustrating a message flow sequence in access LAN terminal according to an embodiment of the present invention.

[0050] 图3a_图c是示出根据本发明的实施例的路由选项的消息流序列。 [0050] FIG 3a_ FIG c is a message flow diagram illustrating a sequence routing options according to an embodiment of the present invention.

[0051] 图4是根据本发明的另一实施例的终端接入LAN的框图。 [0051] FIG. 4 is a block diagram of a LAN access terminal according to another embodiment of the present invention.

[0052] 图5是根据本发明的又一实施例的终端接入LAN的另一个框图。 [0052] FIG. 5 is a block diagram of another embodiment of a terminal LAN access according to the present invention further.

[0053] 图6a_图d是示出根据本发明的实施例的与定位相关的选项的消息流序列。 [0053] FIG 6a_ FIG d shows a message flow sequence related options according to an embodiment of the positioning of the present invention.

[0054] 具体实施方式 [0054] DETAILED DESCRIPTION

[0055] 图1示出通信系统I,其包括WLAN 2、LAN 3、网络5、呼叫管理器40以及PSAP 60。 [0055] FIG 1 shows a communication system I, comprising a WLAN 2, LAN 3, a network 5, the call manager 40 and the PSAP 60. 终端10的用户100想要通过紧急呼叫连接到PSAP60。 Terminal 100 of the user 10 wants to connect to an emergency call through PSAP60. 终端10位于接入点20的覆盖区域内,接入点20属于LAN 3。 The terminal 10 is located within the coverage area of ​​the access point 20, the access point 20 belongs to the LAN 3. LAN3还包括接入控制功能21、DHCP服务器30、定位服务器35以及呼叫管理器40。 LAN3 further comprising access control function 21, DHCP server 30, location server 35 and the call manager 40. 网络5连接呼叫管理器40和PSAP 60。 5 connected to a network call manager 40 and the PSAP 60. 第二网络5可以是诸如PSTN网络之类的普通电话网络。 The second network 5 may be ordinary telephone network such as a PSTN network or the like.

[0056] 终端10可以是用于经由接入网建立电信呼叫的移动设备。 [0056] The terminal 10 may be a mobile device establishing a telecommunication call via an access network. 它可以是例如移动电话或包括带有WLAN接口的VoIP客户端的膝上型计算机。 It may for example comprise a mobile telephone or VoIP client with a WLAN interface end laptop computer. 终端10包括检测单元101、控制单元102和用户接口103。 The terminal 10 includes a detection unit 101, the control unit 102 and user interface 103. 用户接口103包括能使用户100为终端10提供输入以及接收来自终端10的输出的装置。 The user interface 103 enables the user 100 comprises an input terminal 10 and a receiving device provided from the output terminal 10 is. 优选地,用户接口103包括带有输入键的键盘、麦克风、显示器和扬声器。 Preferably, the user interface 103 includes a keyboard, a microphone, a display and a speaker with an input key. [0057] LAN 3的接入点20是这样的硬件设备或计算机软件,其充当通信集线器,供终端10连接到WLAN 2。 [0057] LAN access point 3 20 is a hardware device or a computer software that acts as a communication hub for the terminal 10 is connected to the WLAN 2. AP 20包括发送器201、带有到WLAN 2的接口和到LAN 3的接口的接口模块202、以及控制单元203。 AP 20 includes a transmitter 201 with an interface to the WLAN 2 and 3 to the LAN interface of the interface module 202, and a control unit 203. 到WLAN 2的接口能够向WLAN的终端发送数据和从WLAN的终端接收数据,也即能够与WLAN的终端交换数据;到LAN 3的接口能够向LAN 3的网元发送数据和从LAN 3的网元接收数据,也即能够与LAN 3的网元交换数据。 To the WLAN interface can transmit 2 to a terminal the WLAN and receive data from the terminal the WLAN, i.e., capable of exchanging data with the terminal the WLAN; to the LAN interface can send data to the LAN element 3 3 and from the LAN 3 receiving meta data, i.e., capable of exchanging data with the LAN element 3.

[0058] 发送器201广播专用于使得能够在紧急情况下接入LAN 3的一个或多个紧急SSID0接口202接收由终端10经由空中接口发送到LAN 3的数据分组。 [0058] The broadcast transmitter 201 to enable access to a dedicated LAN 3 in an emergency situation or more emergency SSID0 interface 202 receives transmitted by the terminal 10 via the air interface to the LAN 3 to data packets. 控制单元203为接入点20提供控制和智能功能。 Control unit 203 provides control and intelligence function to the access point 20.

[0059] WLAN 2可以由发送器201的覆盖区域内的终端、到WLAN 2的接口、以及携带在终端与到WLAN 2的接口也即空中接口之间的数据交换的介质来表示。 [0059] WLAN from the terminal 2 may be transmitted within the coverage area 201, the interface to the WLAN 2, and the medium carrying the terminal 2 to the WLAN interface data that is exchanged between the air interface represented.

[0060] SSID标识基于IEEE 802. 11的无线网络。 [0060] SSID identifies IEEE 802.11 based wireless network. SSID因为其本质上是标识网络的名称所以也被称为网络名,SSID是多达32个字母数字字符的区分大小写的唯一的字符串。 Because it is essentially SSID identifies the name of the network is also known as network name, SSID is a unique character string up to 32 characters alphanumeric case sensitive. WLAN上的所有无线设备必须使用相同的SSID以便彼此进行通信。 All wireless devices on a WLAN must use the same SSID in order to communicate with each other. 在WLAN的AP中对SSID进行配置,并且由所有想经由AP接入WLAN的客户端对SSID进行设置。 SSID of an AP in the WLAN configuration, and want to set SSID via a client access to the WLAN by the AP all. 可以通过将SSID输入客户端网络设置中来手工地设置无线客户端上的SSID,或者可以通过让SSID保持未指定或空白来自动地设置无线客户端上的SSID。 SSID may be manually input by the SSID set on the wireless client client network settings, or may be automatically set by allowing the SSID unspecified or blank holding SSID on wireless clients.

[0061] 接入控制功能21提供对LAN 3的接入控制。 [0061] The access control function 21 provides control of access to the LAN 3. 可以将接入控制功能21实现成WLAN控制器,优选地实现成单机设备,或者可以将接入控制功能21集成到AP 20和/或AP设备所提供的功能性中。 Access control function 21 may be implemented as a WLAN controller, preferably implemented as a stand-alone device, or may be integrated into the access control functionality 21 AP 20 and / or the AP device provided. 接入控制功能21包括控制单元204,其用于控制接入控制功能21并且向到达WLAN2边界的数据分组应用存储在存储器模块205中的接入控制规则。 The access control function 21 comprises a control unit 204 for controlling the access control function 21 and the data packets arrive at the access control rules of the application is stored in the memory module WLAN2 boundary 205. 接入控制功能21在容许到达的数据分组进入网络2和3之前对该数据分组进行过滤。 Data access control function 21 filters allow packets arriving packets prior to entering the data network 2 and 3.

[0062] WLAN 2经由网络3连接到DHCP服务器30、定位服务器35以及呼叫管理器40,其中网络3是IP网络,例如LAN或经由DHCP中继功能的互联网。 [0062] WLAN 2 is connected to the DHCP server 3 via the network 30, the positioning server 35 and the call managers 40, wherein the network is an IP network 3, such as a LAN or the Internet via a DHCP relay function. DHCP服务器30将动态IP地址分配给接入LAN 3的设备。 DHCP server 30 dynamically assigns an IP address of the access LAN device 3. 使用动态选址,设备每次连接到网络时可具有不同的IP地址。 Use dynamic location, each time the device is connected to a different network IP addresses. 在某些系统中,设备的IP地址甚至可以在它仍然连接时发生改变。 In some systems, IP address of the device may change even when it is still connected. DHCP还支持静态和动态IP地址的混合。 DHCP also supports a mix of static and dynamic IP addresses.

[0063] 定位服务器35上驻留(host)用来定位终端10的位置的服务,优选web服务。 [0063] The location server resides on (host) 35 used to locate the position of the terminal 10 services, preferably web services. 这可以通过从接收自终端10的数据中提取信息来实现。 This can be achieved by extracting information from data received from the terminal 10. 用术语“定位信息”来概括所有适于提供终端10的位置数据的信息。 The term "location information" to summarize all the information adapted to provide location data terminal 10. 定位信息对于定位终端10可能是有用的。 Location information for the positioning terminal 10 may be useful.

[0064] 呼叫管理器40负责管理通向PSAP 60的紧急呼叫建立。 [0064] Call Manager is responsible for managing access to PSAP 60 40 emergency call setup. 呼叫管理器40包括一个或若干个相互链接的计算机也即硬件平台、基于硬件平台的软件平台和若干个由软件和硬件平台所形成的系统平台执行的应用程序。 Call manager 40 comprises one or several interlinked computers that is a hardware platform, application programs executed based on the hardware platform and several software platform Platform software and hardware platform formed. 通过执行这些应用程序来提供呼叫管理器40的功能性。 Call Manager functionality provided by the execution of these 40 applications. 应用程序或者这些应用程序的被选择的部分组成了计算机软件产品,当在系统平台上执行该计算机软件产品时,其提供如在后面所描述的呼叫管理服务。 The selected part of these application or applications constitute a computer software product, when executed on a computer software product platform, which provides services such as call management as described later. 此外,这种计算机软件产品由存储这些应用程序或应用程序的所述被选择部分的存储器介质组成。 Further, such computer software product storing these application programs by the application program or a memory medium is selected moiety.

[0065] 图2示出根据本发明的第一实施例的在终端10、LAN 2的接入点20、DHCP服务器30、呼叫管理器40和PSAP 60之间的消息序列。 [0065] Figure 2 shows a terminal 10 according to the first embodiment of the present invention, a message sequence between the two LAN access point 20, DHCP server 30, the call manager 40 and the PSAP 60. 在第一步骤901中,AP 20以终端10可通过检测单元10检测紧急SSID的方式,广播两个专用于紧急服务的紧急SSID。 In a first step 901, AP 20 10 terminal 10 can be detected by the detecting unit emergency SSID embodiment, two broadcasting dedicated for emergency services in emergency SSID. 在终端10检测到广播的紧急SSID之后,在动作902中在终端的显示单元上显示一种图标样式以通知终端10的用户:在当前位置处紧急服务是可用的。 After the detection of an emergency SSID broadcast terminal 10, in operation 902 displays one icon style terminal 10 to notify a user on a display unit of the terminal: at the current location of the emergency service is available. 作为替代,可通过任何通知机制来通知用户关于紧急服务的可用性。 As an alternative, to inform the user about the availability of emergency services by any notification mechanism.

[0066] 为了请求所指示的紧急服务,在步骤903中终端10的用户可在终端10的键盘上拨打与紧急服务相关联的紧急服务号码(例如在北美拨打号码9-1-1或在欧洲拨打1-1-2)或者按下终端10上的专用于紧急服务的软键。 [0066] In order to request emergency services indicated, in step 903 the user of the terminal 10 can call the emergency service number associated with the emergency service (e.g. the North American dialing number on the keypad of the terminal 10 or 9-1-1 in Europe 1-1-2 call) or pressing a dedicated softkey on the terminal 10 to the emergency services. 该软键是位于终端的主显示面板下执行特殊功能的键。 The soft keys are located on the terminal main display key perform special functions lower panel.

[0067] 由动作903触发,终端10从一组检测到的紧急SSID中选择一种紧急SSID。 [0067] 903 is triggered by the operation, a group of 10 emergency SSID detected from the selected terminal an emergency SSID. 作为替代,提示终端的用户根据其偏好来选择紧急SSID并通过经由键的输入来指示他的选择。 Alternatively, the terminal prompts the user to select an emergency SSID according to his preferences and by inputting via a key to indicate his choice. 相应地,在步骤904中终端10关联到所选紧急SSID。 Accordingly, in step 904 the associated terminal 10 to the selected emergency SSID. 根据所选紧急SSID,用于紧急呼叫的编解码可以是G. 711。 Depending on the selected emergency SSID, the codec used for the emergency call may be G. 711. 如果终端10原先被关联到另一个SSID,则终端10应该与先前的SSID解除关联并且与该紧急SSID进行关联。 If the terminal 10 originally was associated to another SSID, the terminal 10 should be disassociated with the previous SSID and associate with the emergency SSID. 在下一步骤905中,终端10向DHCP服务器30发送DHCP DISCOVER(DHCP 发现)消息。 In the next step 905, the terminal 10 transmits a DHCP DISCOVER to the DHCP server 30 (DHCP discover) message.

[0068] DHCP服务器30用发送给终端10的例如DHCP OFFER(DHCP提议)消息之类的消息906来回复DHCP请求,其中消息906包括呼叫管理器40的IP地址和端口以及终端10的IP地址。 [0068] DHCP server 30 is sent to the message 906 DHCP OFFERs (DHCP proposals) message like the terminal 10, for example, to respond to a DHCP request message 906 includes the IP address and port, and the IP address of the terminal 10, the call manager 40. 终端可以选择提议,发送另一个请求给DHCP服务器以及接收确认消息。 Terminal may select proposal, send another request to the DHCP server and receiving an acknowledgment message. 因此,终端10能够向指定的目的地即呼叫管理器40发送RTP流907,该RTP流907包括使用G. 711编解码标准的数据分组。 Thus, the terminal 10 or 40 can be transmitted to the designated destination call manager 907 RTP stream, the RTP stream 907 comprising the use G. 711 codec standard data packet. 因为所发送的RTP流907的数据分组与所选紧急SSID相关联,所以接入控制功能21让其通过。 Because the transmitted RTP packet streams 907 associated with the selected emergency SSID, the access control function 21 allowed through.

[0069] 所有经由AP 20进入LAN 3的数据分组必须通过接入控制功能21,接入控制功能21可被实现成专用的单机版接入控制服务器。 [0069] AP 20 enters all LAN data packet to be 21 3, the access control function by the access control function 21 may be implemented as a dedicated stand-alone access control server via. 接入控制服务器可包括一个或若干个相互链接的计算机也即硬件平台、基于硬件平台的软件平台和由软件和硬件平台所形成的系统平台执行的若干应用程序。 The access control server may comprise one or several interlinked computers that is a hardware platform and several application programs executed based on the hardware platform and a software platform, platform software and hardware platform formed. 通过执行这些应用程序来提供接入控制功能21。 21 to provide access control functions by executing these applications. 应用程序或者这些应用程序的被选择的部分组成了计算机软件产品,当在系统平台上执行该计算机软件产品时,其提供如在后面所描述的接入控制服务。 The selected part of these application or applications constitute a computer software product, when executed on a computer software product platform, which provides services such as access control described later. 此外,这种计算机软件产品由存储这些应用程序或应用程序的所述被选择部分的存储器介质组成。 Further, such computer software product storing these application programs by the application program or a memory medium is selected moiety.

[0070] 在LAN 3的网元中例如在LAN 3的交换器、交换台或路由器中将接入控制功能21实现成附加任务也是可能的。 [0070] In the LAN network element 3, for example, the LAN switch 3, the switching center or in the router access control function 21 implemented as additional task are possible. 将接入控制功能21包括在AP 20内也是可能的。 The access control function 21 is included in the AP 20 is also possible. 当在LAN 3的常规网元中实现接入控制功能21的情况下,接入控制功能21可被包括在特定的模块内,其与网元的其他模块和单元一起协作提供接入控制功能。 In the case where an access control function implemented in a conventional LAN network element 3 21, the access control function 21 may be included within a particular module to other modules and units of the network element together cooperate to provide access control functions.

[0071] 接入控制功能21读取每个到达的数据分组的头,特别是读取包括在头内的SSID,以及检查SSID是否就LAN 3得到授权。 [0071] The access control function 21 reads the header of each arriving data packet, in particular, in the read head includes an SSID, and to check whether the SSID is authorized to LAN 3. 例如,对接入控制功能21进行配置以容许所有与LAN 3的授权用户所使用的第一SSID相关联的数据分组以及与任何广播的紧急SSID相关联的数据分组。 For example, the access control function is configured to allow all of the data packets associated with a first SSID to the LAN 3 authorized user to be used and the data packets associated with any emergency SSID broadcast 21. 出于这个目的,接入控制功能21可以已经在存储器205中存储一个数据文件,其包括带有被认可的SSID列表的接入控制列表。 For this purpose, the access control function 21 may be a data file has been stored in the memory 205, which comprises an access SSID list with approved control list. 于是,接入控制功能21查询接入控制列表并将已到达的数据分组的SSID与所述接入控制列表的SSID进行比较。 Thus the data access control function queries the access control list 21 and the packet has reached the SSID of the access control list and compares the SSID. 基于所得结果,容许或者拒绝该数据分组进入LAN 3。 Based on the obtained results, permit or reject the data packet enters the LAN 3. 用类似的方式,可通过接入控制功能21来实现上面所提及的ACL方法。 In a similar manner, 21 can be implemented ACL method mentioned above by the access control function.

[0072] 另一种对LAN 3的接入进行控制的方法可以是由接入控制功能21来将受限的带宽分派给发送与紧急SSID相关联的数据分组的客户端。 Method [0072] Another access to the LAN 3 may be controlled by the access control function 21 assigned to the restricted bandwidth to transmit data packets associated with an emergency SSID client. 优选地,接入控制功能21与每个发送与紧急SSID相关联的数据分组的客户端缔结约定。 Preferably, the access control function 21 transmits a packet to each of the data associated with the emergency SSID client concluded agreement. 这个约定限制可从客户端接受的带宽。 This convention acceptable limit from the client bandwidth. 因此,由接入控制功能21简单地将由终端所发送的超过了所分派的带宽的数据分组丢弃。 Thus, by the access control function 21 is simply transmitted by the terminal exceeds the assigned bandwidth of the data packet is discarded. 这减轻了用户利用其对WLAN的接入来发送除了与紧急呼叫相关的数据分组之外的其他数据分组的危险。 This reduces the user access to the WLAN using its risk of transmitting further data packets in addition to data packets associated with an emergency call.

[0073] 接入控制功能21还可根据所使用的协议以及源IP地址和目的地IP地址,对与紧急SSID相关联的数据分组进行过滤。 [0073] The access control function 21 may also be used according to the protocol and the source IP address and destination IP address, the data packets associated with an emergency SSID to filter. 例如,仅允许数据分组携带语音通信是可能的。 For example, it allows data packets carry only voice communication is possible. 一般而言,针对服务/协议和/或带宽和/或源和/或目的地来对数据分组进行过滤是可能的。 In general, it is possible to filter the data packets for the service / protocol and / or bandwidth and / or source and / or destination.

[0074] 还可通过NAT功能来实现接入控制功能21,NAT功能完成对与紧急SSID相关联的数据分组所设置到的目的地IP地址的地址翻译。 [0074] Access control functions can also be achieved by the NAT function 21, NAT function to complete the address and data packets associated with an emergency SSID are set to the destination IP address translation. 例如可在控制单元204中实现NAT功能。 NAT function may be implemented, for example, the control unit 204. 因此,就能够将任何与紧急SSID相关联并到达接入控制功能21的数据分组的目的地IP地址修改成预定的目的地IP地址,例如呼叫管理器的IP地址。 Accordingly, it is possible that any emergency SSID associated with the access control function and to the data packet 21 is modified to a predetermined destination IP address, destination IP address, e.g. IP address of the call manager. 这防止了客户端向除了与紧急相关的设备之外的其他设备发送分组。 This prevents the client device in addition to other emergency-related equipment and send the packet.

[0075] 除了通过DHCP解决方案为终端10分配IP地址之外,终端10还可通过在电信组网领域中所公知的其他方法来接收IP地址。 [0075] In addition to the solution via DHCP assigns an IP address to the terminal 10, terminal 10 may also receive an IP address to the network by other methods well known in the field of telecommunications.

[0076] 将与紧急呼叫相关联的数据分组传输到作为第一基站的呼叫管理器40所用的方法完全与所用的协议无关。 [0076] The transmission of data packets associated with an emergency call method 40 used completely independent of the protocol used by the call manager as to the first base station. 为了保证可靠和快速的传输,省略了所有可能容易出错的修改,诸如编码和解码、组帧,等等。 In order to ensure reliable and fast transmission, all modifications may be omitted error-prone, such as encoding and decoding, framing, and the like. 将数据分组例如作为RTP分组简单地从终端10传送给呼叫管理器40,呼叫管理器40 —直在特定的端口上监听紧急服务请求。 E.g. RTP data packets as a packet simply passes from the terminal 10 to the call manager 40, the call manager 40 - Direct listening emergency service request on a specific port.

[0077] 经由PSTN网络将与紧急呼叫相关的数据分组从呼叫管理器40路由到PSAP 60。 [0077] network via the PSTN associated with the emergency call from the packet data manager 40 routes the call to the PSAP 60. 由此,拨打903紧急服务号码迅速地将终端10连接到PSAP处的调度器(dispatcher),该调度器被训练成将紧急呼叫路由给本地紧急医疗、火灾和执法机构。 Thus, call emergency services number 903 quickly is connected to the terminal 10 at the PSAP dispatcher (Dispatcher), the scheduling is trained to route the emergency call to local emergency medical, fire, and law enforcement agencies.

[0078] 在PSAP呼叫中心60处,工作人员核实呼叫者的位置,确定紧急的类型,以及决定应该通告哪种紧急响应队伍。 [0078] In 60 PSAP call center staff to verify the caller's location, emergency response teams to determine which type of emergency, and decisions should notice. 紧急调度器使用LBS(LBS=基于位置的服务)提供的位置信息来指导对紧急进行响应的公共安全人员,以确保最可能短的紧急响应时间。 Emergency dispatch uses LBS to guide public safety emergency personnel responding (LBS = location-based services) location information provided to ensure the shortest possible emergency response time. 有时单个主PSAP将对整个地域进行应答。 Sometimes a single primary PSAP entire region will respond. 在多数情况下,将呼叫者转接到将从其发送帮助的辅助PSAP。 In most cases, the caller will be transferred to the secondary PSAP to send help. 辅助PSAP有时位于火灾调度办公室、市警察总局、或救护车调度中心。 Sometimes secondary PSAP fire dispatch office is located, the city police headquarters, or ambulance dispatch center. 一旦呼叫被处理,则PSAP工作人员或调度中心向恰当的紧急响应队伍、火灾、援救、警察、调度者等等发出告警。 Once the call is processed, the PSAP dispatch center staff or to the appropriate emergency response team, fire, rescue, police, an alarm scheduler, and so on.

[0079] 除了DHCP选项之外,基础设施可使用目的地NAT来将分组重定向到到呼叫管理器40的IP地址和端口。 [0079] In addition to the DHCP options, destination NAT infrastructure can be used to redirect packets to the IP address and port call manager 40. NAT是一种互联网标准,其使局域网能够将一组IP地址用于内部业务而将第二组地址用于外部业务。 NAT is an Internet standard that enables a local area network can be a set of IP addresses for internal traffic and a second set of addresses for external traffic. 位于LAN接触互联网的地方的NAT盒进行所有必须的IP地址翻译。 Located LAN access to the Internet where the NAT box make all the necessary IP address translation. 这里,NAT主要用于通过隐藏内部IP地址来提供一类防火墙的目的。 Here, NAT is mainly used to provide a type of firewall by hiding internal IP address of the destination. 当使用目的地NAT时,流被转发到特殊端口上的主机,或者终端10可使用DHCP选项直接将RTP流907发送到呼叫管理器40。 When the destination using the NAT, the flow is forwarded to a host on a particular port, or the terminal 10 can directly transmit the RTP flow 907 to the call manager 40 using the DHCP option. 所有的RTP流被导向其位于一个端口上的特殊地址。 All RTP flows are directed positioned on a special address port. 在一个端口上创建多个套接字。 Create multiple socket on a port. 对于多播或单播套接字来说这是对的。 For multicast or unicast socket, this is right. 被动套接字没有被连接,而是等待将产生新的主动套接字的进入连接(incoming connection)。 Passive socket is not connected, but will have to wait for a new initiative into the socket connection (incoming connection).

[0080] 因为在通过AP 20可对其接入的LAN 3处终端10是未知的,所以可不使用任何加密。 [0080] Because the AP 20 may be made thereto by the third terminal 10 of LAN access is unknown, it may not use any encryption. 然而,存在若干种关于如何保护LAN 3不受侵犯和/或攻击的方式。 However, there are several ways on how to protect the LAN 3 is inviolable and / or attacks.

[0081] 主要的安全危险是拒绝服务(=DoS)。 [0081] The main safety hazards is a denial of service (= DoS). DoS攻击是一种对主机(服务器)的攻击,目的是使其服务中的一个或多个服务瘫痪。 DoS attack is an attack on the host (server) with the aim of making it a service or multiple services paralysis. 通常,这是通过使其过载来实现的。 Typically, this is accomplished by overloading it. 通常,DoS攻击不是手工完成而是用后门(backdoor)程序来完成的,后门程序不受约束地扩散到网络中的其他主机。 Typically, DoS attacks are not done by hand but with a backdoor (Backdoor) to complete the program, backdoor unconstrained spreading to other hosts on the network. 因此,攻击者具有可由他自由支配地用于执行其DoS攻击的附加计算机。 Therefore, the attacker may have additional computer he used in the implementation of its discretionary DoS attacks. 在诸如LAN 3之类的802. 11基础设施上,可应用防火墙规则来提供某种抵抗攻击的保护。 On the 802.11 infrastructure such as LAN 3 and the like, can apply firewall rules to provide some protection against attacks. 只有DHCP或RTP分组是允许进入LAN 3上的特定主机的流。 Only DHCP and RTP packets are allowed to flow into the particular host on the 3 LAN. 如果使用其他协议,则可以将用户列入黑名单,并且在可配置的时间段期间用户不能与AP 20关联。 If other protocols, the user can be blacklisted, and can not be associated with a user during a configurable time period and the AP 20.

[0082] 作为替代,可以在LAN 3上实现DoS和中间人(MMT)检测和防御应用。 [0082] Alternatively, and intermediaries may be implemented DoS (MMT) detection and defense application on LAN 3. MITM攻击源于物理上或逻辑上位于各通信方的中间的攻击者。 MITM attack from physically or logically in the middle of communication parties attacker. 在这个位置,MITM攻击者能完全控制两个或多个网络订户间的数据业务,并且能够看见或甚至随意地操作被交换的信息。 In this position, the MITM attacker has complete control data traffic between two or more network subscribers and can see or even the operation information being exchanged arbitrarily.

[0083] 另外一种保护LAN 3抵抗攻击的方法将只为用户提供受限的带宽:这可帮助系统防御DoS。 [0083] Another method of protection against attack by LAN 3 will provide only limited bandwidth for users: This can help the system defense DoS. 还可使用目的地NAT来防止攻击被导向其他设备。 Destination NAT may also be used to prevent attacks by other guide devices.

[0084] 在又一个实施例中,可在专用于所有客户用户的虚拟局域网( = VLAN)中使用所有客户用户的联合以在每个VLAN上应用ACL。 [0084] In yet another embodiment, all customers may be specific to the user's virtual local area network (= VLAN) is used for all customers who combined to apply ACL on each VLAN. 网络上的VLAN是一个广播域。 VLAN on the network is a broadcast domain. 该VLAN上的所有主机可与同一VLAN中的其他成员进行通信。 All hosts on the VLAN can communicate with other members of the same VLAN. 私有VLAN( = PVLAN)允许将业务像OSI (0SI =开放系统互连)模型的数据链路层(第2层)一样进行分段,限制广播域的大小。 Private VLAN (= PVLAN) allows the data link layer (layer 2) service as OSI (0SI = Open Systems Interconnection) model for the same segment, to limit the size of the broadcast domain. ACL控制着谁接收MAC/IP地址接入。 ACL controls who receives a MAC / IP address access. 例如,在路由器处对ACL进行配置,路由器可通过客户端的IP地址排除特定的客户端对LAN 3的接入。 For example, to configure the ACL at the router, the router can exclude specific clients access to LAN 3 through the IP address of the client.

[0085] 还可在交换器和路由器上实现抵抗攻击的保护。 [0085] may also be implemented on switches and routers protection against attacks. 一种可能是配置用于第2层隔离的PVLAN环境。 One possibility is configured for layer 2 isolation PVLAN environment. PVLAN在现有VLAN中提供进一步的细分,使得将各端口彼此分离开同时仍然共享相同的IP子网。 PVLAN offer further subdivision in conventional VLAN, such that the ports are separated from each other while still sharing the same IP subnet. 这使得能够使设备间发生分离,而无需为每个设备一个单独的IP子网。 This enables the separation occurs between devices, each device without requiring a separate IP subnet. 在其最简单的形式中,PVLAN支持隔离的端口和混杂的端口。 In its simplest form, PVLAN support isolated ports and promiscuous ports. 隔离的端口只能与混杂的端口进行对话,而混杂的端口可与任何端口进行对话。 Isolated port can only dialogue with promiscuous ports and promiscuous ports can talk to any port. 在这种部署中,子网的成员是隔离的端口,而网关设备连接到混杂的端口。 In this deployment, the members of a subnet are isolated ports, and the gateway device is connected to a promiscuous port. 这使得子网上的主机不为同一子网中的成员的请求提供服务。 This enables the host subnet does not serve the request on the same subnet members. ` `

[0086] 另一种可能性将是802.1x私有客户VLAN特征,该特征将802.1x客户VLAN扩充到用于第2层隔离的PVLAN环境。 [0086] Another possibility would be the 802.1x private customer VLAN feature, which will expand to a customer VLAN 802.1x PVLAN environment for layer 2 isolation. 802.1x私有客户VLAN通过客户辅助PVLAN为没有802.1x请求者(supplicant)的用户提供受限的网络接入。 VLAN 802.1x private client by the client to provide the secondary PVLAN to users not limited 802.1x supplicant (Supplicant) network access.

[0087] 相当直接地,另外一种方法将是使用ACL技术或者是仅仅在主干端口上限制通向各个VLAN的MAC地址的最大数量。 [0087] fairly directly, another method would be to use the maximum number of ACL technique or simply limit access to each VLAN trunk port in the MAC address.

[0088] 本发明支持若干种关于如何防止非恶意的不恰当的关联。 [0088] The present invention supports several non-malicious related about how to prevent inappropriate. 例如,每个关联到紧急SSID的终端应该发送TSPEC以要求在特定时间量内紧急,否则由AP 20将它解除关联和/或列入黑名单。 For example, each of the emergency SSID associated to the terminal should be transmitted TSPEC to require emergency within a certain amount of time, otherwise it will be released by the AP 20 is associated and / or blacklisted. 作为替代,可以隐藏SSID并且强制进行主动扫描以关联到紧急SSID。 Alternatively, it is possible to force hidden SSID and active scanning to associate with the emergency SSID.

[0089] 可以通过触发终端10使用TSPEC业务规范来指示RTP流具有语音紧急优先级,而对紧急服务呼叫进行优先级区分。 [0089] RTP stream may be indicated with a voice emergency priority by triggering the terminal 10 uses TSPEC traffic specification, and the emergency services call prioritized. 还可能是,相对于较低优先级的呼叫,可使用抢先权过程来优选选择紧急呼叫。 Also it may be, with respect to calls of lower priority, pre-emption may be used to process the emergency call is preferably selected.

[0090] 图3a到图3c示出与对紧急呼叫的分组进行路由有关的三个不同的例子。 [0090] Figures 3a to 3c show the three packets for routing emergency calls relating different examples. 在图3a到图3c中的每个图中,在终端10、LAN 3的接入点20、与接入点20相关联的NAT服务器22、DHCP服务器30、呼叫管理器40以及PSAP 60间传输消息序列。 In each of FIGS. 3a to Fig. 3c, the transmission between the terminals 10, 20 associated LAN access point 20 3, the NAT server and the access point 22, DHCP server 30, the call manager 40 and the PSAP 60 message sequence.

[0091] 图3a示出与基于DHCP方法的分组路由有关的消息流序列。 [0091] Figure 3a shows a message flow sequence based packet routing method related to DHCP. 使用该DHCP方法,客户端在请求IP地址时请求特殊的DHCP选项,该选项将把呼叫管理器的IP地址交给客户端。 Using this method DHCP client requests specific DHCP options when requesting IP address, the call option will manage the IP address to the client. 在该方法的第一步中,终端10发送DHCP DISCOVER消息210。 In the first step of the method, the terminal 10 sends a DHCP DISCOVER message 210. 对于能够利用DHCP服务器30的终端10,除非使用了DHCP中继,否则两个设备必须都位于相同的IP网络中。 For the DHCP server 30 can utilize the terminal 10, unless a DHCP relay, or two devices must be located in the same IP network. 如果两个设备不在相同的IP网络中,则可以使用诸如DHCP中继单元或DHCP帮手单元之类的DHCP协助设备,其将DHCP相关的消息中继和/或转发给DHCP服务器所位于的网络。 If the two devices are not the same IP network, you can use DHCP assistance device such as a DHCP relay unit or a DHCP helper unit such that the associated DHCP message relay and / or forwarded to a network DHCP server is located.

[0092] 终端IO所发送的DHCP DISCOVER消息210到达DHCP服务器30。 DHCP DISCOVER message [0092] transmitted by the terminal IO 210 reaches the DHCP server 30. 在终端IO和DHCP服务器30处在相同的网络例如VLAN中的条件下,其可通过以广播的方式发送DHCPDISCOVER消息210来实现,或者其可经由DHCP帮手来实现。 IO terminal 30 and the DHCP server in the network, for example, under the same conditions as in the VLAN, which may be sent by broadcasting a DHCPDISCOVER message 210 is achieved, or it may be implemented via a DHCP helper. 通过DHCP DISCOVER消息210,终端10向DHCP服务器30请求IP地址。 210, the terminal 10 requests an IP address from the DHCP server 30 through the DHCP DISCOVER message. 优选地,DHCP DISCOVER消息210包括终端10的MAC (MAC=介质访问控制)地址。 Preferably, DHCP DISCOVER message 210 comprises a terminal MAC 10 (MAC = Media Access Control) address. 也被称为LAN地址的MAC地址、以太网ID或机场ID是网络设备的硬件地址,其用于在网络中唯一地标识设备。 MAC address is also known as LAN address, Ethernet ID or airport ID is the hardware address of the network device, which is used to uniquely identify the network device.

[0093] 优选地,终端10将DHCP DISCOVER消息210作为网络广播发送给所有可用的DHCP服务器。 [0093] Preferably, the terminal 10 transmits the DHCP DISCOVER message 210 to all available DHCP server as a broadcast network. 可能有若干DHCP服务器位于相同的IP子网中。 There may be several DHCP server is located in the same IP subnet. DHCP DISCOVER广播消息210可携带0. 0. 0. O作为发送者IP地址并且可以被编址为目的地地址255. 255. 255. 255,因为发送终端10不拥有IP地址,而且将请求导向所有可到达的DHCP服务器。 DHCP DISCOVER broadcast message 210 may carry 0. 0. 0. O as the sender IP address and can be addressed as the destination address 255. 255. 255.255, because the sending terminal 10 does not have an IP address, and the request is directed to all DHCP server can be reached.

[0094] DHCP服务器30接收DHCP DISCOVER消息210并且用包括针对请求终端10的IP地址的提议的DHCP OFFER消息211进行回复。 [0094] DHCP server 30 receives the DHCP DISCOVER message 210 and replies with a DHCP OFFER message includes the IP address of a request for proposal 211 of the terminal 10. DHCP0FFER消息211还包括标识发送DHCP服务器30的服务器ID和呼叫管理器40的IP地址和端口。 DHCP0FFER message identifier 211 further comprises transmitting a DHCP server ID and call management server 30 of the IP address and port 40. 终端10可能从不同的DHCP服务器接收超过一个提议消息。 Terminal 10 may not receive more than one proposal message from different DHCP servers. 因此,终端可在所接收的提议中进行选择。 Thus, the terminal can be selected in the received proposal. 在选择了该一个或多个提出的提议中的一个之后,终端通过DHCP REQUEST (DHCP请求)消息212联系通过相应的服务器ID来标识的恰当的DHCP服务器30。 After selecting one of the one or more proposals put forward in the terminal (DHCP Request) message 212 to contact the appropriate DHCP server 30 identified by the ID server via the corresponding DHCP REQUEST. 优选地,DHCP REQUEST消息212被广播。 Preferably, DHCP REQUEST message 212 is broadcast.

[0095] 作为响应,DHCP服务器30向请求终端10发送DHCP ACK (=确认)消息213。 [0095] sent in response, DHCP server 30 to the requesting terminal 10 DHCP ACK (= acknowledgment) message 213. 所传输的DHCP ACK消息213包括终端10的IP地址、呼叫管理器40的IP地址和呼叫管理器40 一直在其上进行监听的端口、以及附加的相关数据。 The transmitted DHCP ACK message 213 comprises the IP address of the terminal 10, the call manager and the IP address of the call manager 40 is listening port 40 has, as well as additional relevant data thereon.

[0096] 因此,在步骤214中,终端10具有其自己的IP地址、呼叫管理器40的IP地址和呼叫管理器40正在监听的端口。 [0096] Thus, in step 214, the terminal 10 has its own IP address, the IP address of the call manager 40 and the call manager 40 is listening. 终端10用呼叫管理器40的目的地地址和端口对与紧急呼叫相关的分组进行编址,并且将经编址的分组发送给呼叫管理器40。 Destination address and port of the terminal 10 performs the 40 addressed packets associated with an emergency call, and sends to the call manager 40 via the packet addressed by the call manager. 建立在终端10和呼叫管理器40间的RTP流215。 40 based on terminal 10 and the call manager 215 RTP streams. 呼叫管理器40接收与紧急呼叫相关的分组,启动通向相关PSAP 60的呼叫建立216,以及将分组转发给PSAP 60。 Call manager 40 receives a packet associated with the emergency call, leading to the start of the relevant PSAP 60 call setup 216, and forwards the packets to the PSAP 60.

[0097] 图3b示出与基于目的地NAT的分组路由相关的消息流序列。 [0097] FIG. 3b shows a message flow sequence related to a packet routing based on the destination of the NAT. 使用该目的地NAT方法,客户端一旦接收到IP地址,其可将分组发送给任何目的地地址。 Using this destination NAT method, a client upon receiving the IP address, it can send a packet to any destination address. NAT服务器22将该地址修改成呼叫管理器40之一。 The NAT server 22 is modified to address one of the call manager 40. 图3b的步骤220到224对应于图3a中示出的步骤210到214。 Steps 220-224 of Figure 3b corresponding to FIG. 3a shown 210-214. 相对于图3a中所说明的方法,仅有的不同是:DHCP OFFER消息221和DHCP With respect to the method illustrated in Figure 3a, the only difference is: DHCP OFFER message and the DHCP 221

[0098] ACK消息223不包括呼叫管理器40的IP地址和端口。 [0098] ACK message 223 does not include IP address and port of the call manager 40.

[0099] 终端10还可能接收IP地址用于除了经由DHCP之外经由其他方法来加入LAN 3。 [0099] the terminal 10 may also receive an IP address via DHCP to be added in addition to LAN 3 via another method.

[0100] 在步骤224中,终端只获取其IP地址。 [0100] In step 224, the terminal only gets its IP address. 终端10用任何IP地址作为目的地地址对与紧急呼叫相关的分组进行编址,并且将经编址的分组发送给与AP 20相关联的NAT服务器22。 IP address of the terminal 10 in any of the packet destination address associated with the emergency call as addressed, and sent to an AP 20 associated with the NAT server 22 via the packet addressed. 建立在终端10和NAT服务器22之间的RTP流225。 Established between the terminal 10 and the NAT server 22 RTP streams 225. NAT服务器22从终端10接收分组并将目的地地址翻译成呼叫管理器40的IP地址。 Translation NAT server 22 receives a packet from the terminal 10 and the destination address to the IP address of the call manager 40. 建立在NAT服务器22和呼叫管理器40之间的RTP流226。 NAT server 22 is established between the call manager 40 and RTP streams 226. 呼叫管理器40接收分组形式或流形式的与紧急呼叫相关的信息,启动通向相关PSAP 60的呼叫建立227,以及将分组转发给PSAP 60。 40 receive a packet stream form or in the form of call manager with information related to an emergency call, leading to the start of the relevant PSAP 60 call setup 227, and the packet is forwarded to the PSAP 60.

[0101] 图3c示出与基于多播方法的分组路由相关的消息流序列。 [0101] Figure 3c shows a message flow sequence related to a packet routing based on a multicast method. 使用该多播方法,客户端一旦接收到IP地址,其就将分组发送给在呼叫管理器40正在监听的预定义的端口上的公知多播地址。 Using this multicast method, a client upon receiving the IP address, it will send a packet to a predefined well-known in the call manager 40 is listening port multicast address. 图3c的步骤230到234对应于图3a中示出的步骤210到214。 Steps 230-234 of FIG. 3c corresponds to FIG. 3a shown 210-214. 相对于图3a中所说明的方法,仅有的不同是:DHCP OFFER消息231和DHCP ACK消息233不包括呼叫管理器40的IP地址和端口。 With respect to the method illustrated in Figure 3a, the only difference is: DHCP OFFER message 231 and the DHCP ACK message 233 does not include a call manager IP address and port 40.

[0102] 终端10还可能接收IP地址用于除了经由DHCP之外经由其他方法来加入LAN 3。 [0102] the terminal 10 may also receive an IP address via DHCP to be added in addition to LAN 3 via another method.

[0103] 在步骤234中,终端只获取其IP地址。 [0103] In step 234, the terminal only gets its IP address. 终端10用多播IP地址作为目的地地址对与紧急呼叫相关的分组进行编址,并且将经编址的分组发送给呼叫管理器40。 The terminal 10 with the multicast IP address as a destination address for addressing the emergency call associated with the packet, and sends the packet to the addressed by the call manager 40. 建立在终端10和呼叫管理器40之间的RTP流235。 10 is established between the terminal 40 and the call manager 235 RTP streams. 呼叫管理器40接收与紧急呼叫相关的信息(分组/流形式),启动通向相关PSAP 60的呼叫建立236,以及将分组转发给PSAP 60。 The call manager 40 receives the emergency call-related information (packet / stream form), leading to the relevant PSAP 60 starts a call setup 236, and the packet is forwarded to the PSAP 60.

[0104] 图4示出WLAN 2的授权用户的组700,该WLAN 2包括终端70到73。 [0104] FIG. 4 shows a set of authorized users 700 WLAN 2, the WLAN 2 comprising the terminals 70 to 73. 授权用户的组700通过使用第一SSID 7能够用非紧急呼叫接入LAN 3。 Authorized user group by using the first SSID 7 700 to access LAN 3 with a non-emergency calls. 与此同时,组700的成员也是开放组800的成员。 At the same time, members of the group 700 of 800 members of the group is open. 开放组800同时包括具有终端70到73的授权用户和具有终端10到13的WLAN 2的未授权用户。 Simultaneously opening set 800 includes a user terminal 70 to 73 authorized and unauthorized users with WLAN terminal 10 2 through 13. 只有授权用户的组700有权通过使用第一SSID 7用非紧急呼叫来接入LAN 3。 Only authorized users the right group 700 by using a first SSID 7 with non-emergency calls to access the LAN 3. 然而,组700的成员和组800的成员都能够通过使用紧急SSID 8用紧急呼叫来接入LAN 3,因为组800位于接入点20的覆盖区域中。 However, members of the group 700 and 800 members of the group are able to 8 with an emergency call using the emergency access LAN 3 by the SSID, because the coverage area of ​​the group 800 located in the access point 20. 组700和组800的任何终端,例如终端10或终端71,都可以使用紧急SSID 8经由接入点20来接入LAN 3。 Any terminal group 700 and group 800, such as a terminal 10 or terminal 71, can be used to access the emergency SSID 8 20 LAN 3 via the access point.

[0105] 由此,在接入点20的覆盖区域中的任何终端可以在紧急情况下通过使用紧急SSID 8来接入LAN 3。 [0105] Thus, any terminal in the coverage area of ​​the access point 20 by using an emergency SSID 8 to access the LAN 3 in an emergency. 在非紧急呼叫的情况下,只有包括WLAN 2授权用户的经授权的组700的终端可经由接入点20接入LAN3。 700 of the terminal group in the case of non-emergency calls only authorized WLAN 2 comprises an authorized user may access via the access point 20 LAN3. 尽管与紧急SSID 8相关联的呼叫将被路由到PSAP60,但是在从现有技术已知的过程中,可以将例如源自终端70的非紧急呼叫路由到另一个通信方90。 While the emergency call associated SSID 8 will be routed to PSAP60, but known from the prior art process, for example, may be derived from a non-emergency calls routed to another communication terminal 70 side 90.

[0106] 为了加强接入控制,接入控制功能21除了将对LAN 3的接入限制在来自与经授权的SSID相关联的终端的数据分组之外,还可将附加的规则应用到到达的数据分组。 [0106] In order to enhance the access control, the access control function 21 in addition to the 3 LAN access will limit the SSID from the terminal associated with the authorized data packet may also be additional rules to reach data packets. 可以为从与所选紧急SSID相关联的终端向LAN 3发送数据分组的每个用户分配受限的带宽,虽然该带宽足够用于建立通向PSAP 60的紧急呼叫但是对建立其他呼叫来说则不够宽。 May be limited from each user is assigned with the terminal selected emergency SSID associated to the packet data transmission bandwidth of LAN 3, although the bandwidth is sufficient for an emergency call establishment leads to PSAP 60 but other calls for the establishment of not wide enough. 这种接入控制机制可能会起作用,因为就数据量而言紧急呼叫可能相当有限。 This access control mechanism may play a role, because it is the amount of data in terms of emergency calls can be quite limited.

[0107] 与这种接入控制机制紧密相关的是仅容许语音业务进入LAN 3的技术。 [0107] This closely related to the access control mechanism that allows only a voice service into the 3 LAN technology. 因此,如果与像视频这样费带宽的应用相关的数据分组试图通过使用紧急SSID进入LAN 3,则这样的数据分组被禁止进入LAN 3。 Therefore, if the data associated with the application fee such as video bandwidth packet tries to 3, then such a data packet is prohibited from entering the LAN 3 by using the emergency SSID into the LAN.

[0108] 图5示出用于传输IP分组的网络400以及两个用于提供对网络400的接入的无线接入网401、402。 [0108] Figure 5 illustrates a network for transmission of IP packets and two 400 for providing wireless access to a network 400 access network 401, 402. 公司接入网401是只可由授权用户终端701、702接入的公司接入网;然而,在紧急接入网402的服务区域内的任何移动用户终端,也即授权用户终端701、702和客户用户终端801到803,出于紧急目的都可接入紧急接入网402。 Access Network 401 may only authorized users access to the terminals 701,702 Access Network; however, any mobile user terminal within the access network 402 of an emergency service area, i.e., an authorized user and the client terminals 701, 702 The user terminal 801-803, for the purposes of the emergency access network 402 can access the emergency.

[0109] 授权终端701、702可包括加密模块7010、7020,其使终端701、702能在将数据分组传输给接入网4012之前适当地对数据分组进行加密。 [0109] authorized terminals 701 and 702 may include an encryption module 7010,7020, which enable the terminals 701 and 702 can transmit data packets to the access appropriately encrypt data packets before the network 4012. [0110] 每个接入网401、402通过发送器,例如通过AP,对特定用于相应的接入网的SSID进行广播。 [0110] Each access network 401, 402 through the transmitter, for example, by the AP, specific for the respective access network broadcasts the SSID. 公司接入网401对与公司接入网401相关联的公司SSID进行广播,而紧急接入网402对与紧急接入网402相关联的紧急SSID进行广播。 Access Network and Access Network 401 pairs of associated companies 401 broadcasts the SSID, and performs the emergency access network 402 broadcasts an emergency access network 402 and associated emergency SSID. 在接入网401、402的覆盖区域中的任何终端都可接收广播SSID。 Any terminal in the access network 401, 402 in the coverage area can receive the broadcast SSID.

[0111] 公司接入网401包括接入控制功能4011,并且类似地,紧急接入网402包括接入控制功能4021。 [0111] Access Network 401 comprises an access control function 4011, and similarly, the emergency access network 402 comprises an access control function 4021. 将接入控制功能4011、4021实现为包括存储在存储器模块中的接入控制规则的单机服务器。 The access control function 401 1, 4021 implemented as a standalone server includes access control rules stored in the memory module. 每个接入控制功能4011、4021在容许到达的数据分组进入接入网401、402之前先对它们进行过滤。 Each access control data 401 1, 4021 in the allowable packet arriving first enters the access network 401 before they are filtered.

[0112] 接入控制功能4021准许来自与关联到紧急接入网402的紧急SSID相关联的终端的数据分组进入紧急接入网402。 [0112] permission from the access control function 4021 to the emergency access network associated with the data terminal associated with the emergency SSID packet 402 enters the emergency access network 402. 只有授权用户终端701、702可以能够通过加密模块7010、7020对数据分组进行适当地加密。 Only authorized user terminals 701, 702 may be capable of appropriately encrypted by the encryption module 7010,7020 data packet. 到达接入控制功能4011的数据分组必须源自与关联到公司接入网401的公司SSID相关联的终端,并且可以被适当地加密以容许进入接入网401。 Arrive at the access control data packets from the terminal 4011 to be a company associated with the access network to the company associated with the SSID 401, and may be properly encrypted to be admitted to the access network 401. 通过加密技术,接入控制功能4011对到达的数据分组进行过滤并且丢弃不是源自授权用户终端的数据分组。 By encryption, access control function 4011 filters the arriving data packets and discards data packets is not authorized from the user terminal. 接入控制功能4011从数据库4012中获取相关数据用于过滤和检查过程。 The access control function 4011 acquires 4012 relevant data from the database and checking for the filtering process.

[0113] 客户用户终端801已经注意到公司SSID并使用公司SSID来接入公司接入网401。 [0113] The user terminal 801 has been noted that the client company using the company's SSID and SSID to access the Access Network 401. 下面这种情况是可能的,公司接入网401的网络管理·员配置了公共公司SSID,其设置在公司接入网401的接入点上并被广播到范围内的所有无线设备。 The following scenario is possible, Access Network 401 network management company public-staffing the SSID, which is provided on the access point Access Network 401 and broadcast to all wireless devices in range. 因此,公司接入网401已经公开地广播了公司SSID,而且客户用户终端801通过获得广播的公司SSID已经接收到了公司SSID。 Accordingly, the company has disclosed the access network 401 broadcasts a corporate SSID, the user terminal 801 and the client has received the corporate SSID obtained through the company's broadcast SSID.

[0114] 然而,客户用户终端801还可能与想以未授权的方式使用由公司接入网401提供的通信服务的窃听者相关联。 [0114] However, the client terminal 801 the user may also want to use in an unauthorized manner by the Access Network 401 provides a communication service associated eavesdropper. 让我们设想一下,公司接入网401的网络管理员已经取消自动SSID广播特性以试图改善网络安全性,因为公开广播公司SSID可能引起安全风险。 Let us imagine that the company received the network administrator network 401 has been canceled automatic SSID broadcast feature of an attempt to improve network security, because public broadcasters SSID may pose a security risk. 然而,由于可在来自由授权终端701、702发送给公司接入网401的数据分组的纯文本中发现SSID,所以窃听者可以轻易地绕过通过终止(deactivation) SSID广播所提供的保护。 However, since the free terminal authorized to access network 701, 702 to a company plaintext data packet 401 found the SSID, so eavesdroppers can easily bypass the protection by terminating (deactivation) SSID broadcast provided.

[0115] 然而,客户用户终端801已经接收到了公司SSID,与公司SSID进行关联,并且将数据分组流301发送给公司接入网401。 [0115] However, the client terminal 801 has received the user to the company the SSID, the SSID be associated with a company, and the flow of data packets transmitted to the Access Network 301 401. 由于客户用户终端801没有对数据分组301进行适当地加密的手段,所以由接入控制功能4011对数据分组流301执行的检查导致拒绝数据分组流301。 Since the client terminal user 801 data packet 301 is not a means of properly encrypted, by the access control function 4011 pairs of data packet stream 301 performs check of a data packet stream 301 results in denial.

[0116] 另一方面,包括加密模块7010的授权用户终端701将数据分组1001发送给公司接入网401,其既是来自与公司SSID相关联的终端又被适当地加密。 [0116] On the other hand, it includes an encryption module 7010 authorized user terminal 701 transmits a data packet 1001 to the company access network 401, from which both the terminal and the company associated with the SSID is appropriately encrypted. 因此,在接入控制功能4011处的检查过程导致容许进入接入网。 Thus, the access control function 4011 results in an inspection process allowed into the access network. 同样地,源自其他授权用户终端702的数据分组1002也被容许进入公司接入网401。 Similarly, data originating from the other authorized user terminal 702 also are admitted to the packet 1002 Access Network 401.

[0117] 当授权用户终端702将来自与紧急SSID相关联的终端的数据分组502发送给接入控制功能4021时,数据分组502被容许进入紧急接入网402。 [0117] When the authorized user terminal 702 from the terminal 502 transmits the data packets associated with an emergency SSID to the access control function 4021, a data packet 502 is admitted to the emergency access network 402. 虽然客户用户终端802将与紧急SSID相关联的数据分组流501发送给公司接入网401,但是不被容许进入公司接入网401,因为数据分组流501既不是来自与恰当的SSID相关联的终端也未被适当地加密。 While the client user terminal 802 with the emergency SSID associated data packet stream 501 to a company access network 401, but is not allowed to enter a company access network 401, 501 since neither the SSID associated with the appropriate data from the packet stream the terminal is also not properly encrypted. 然而,当与紧急SSID相关联的客户用户终端802向紧急接入网402发送数据分组流503时,接入控制功能4021容许数据分组流503进入紧急接入网402,因为数据分组流503来自与紧急SSID相关联的终端。 However, when the client user terminal 802 with the emergency SSID associated to the emergency access network 402 sends a data packet stream 503, access control functions 4021 allow the data packet stream 503 enters the emergency access network 402, because the data packets from the stream 503 emergency SSID associated terminals.

[0118] 当与公司SSID相关联的客户用户终端803向紧急接入网402发送数据分组302时,接入控制功能4021拒绝数据分组流302。 [0118] When the emergency access network 402 sends data with the client company user terminal 803 to the packet associated with the SSID 302, the access control function 4021 302 rejects the data packet stream. 接入控制功能4021只容许来自与紧急SSID相关联的终端的数据分组进入。 Access control functions 4021 allow data from a terminal associated with the emergency SSID incoming packet.

[0119] 数据流1001和1002在进入公司接入网401之后,被作为数据流601和602转发给网络400,并被路由给网元4001,例如路由器或交换器,其根据在数据流601和602的数据分组中所指示的IP目的地地址对数据流601和602进行路由或交换。 [0119] Data streams 1001 and 1002 after entering the Access Network 401, as a data stream 601 is forwarded to the network 400 and 602, 4001 and routed to a network element, such as routers or switches, based on the data stream 601 and IP destination address of the data packet 602 as indicated in the data streams 601 and 602 for routing or switching.

[0120] 例如,当授权用户终端701的用户拨打公司通信方的VoIP电话号码时,授权用户终端701的VoIP用户代理相应地用相应的地址对数据分组1001、601进行编址,并且网元4001将数据分组流601路由到负责该地址的另一个网元4002。 [0120] For example, when a user authorized user terminal 701 dials the telephone number VoIP communication party company, an authorized user of the VoIP terminal user agent 701 corresponding to the address with the corresponding data packets addressed 1001,601, 4001 and NEs the data packet stream 601 is responsible for routing to the address of another network element 4002. 建立连接需要交换用于恰当路由和呼叫建立的信令和控制消息。 Establish a connection to exchange signaling required for proper routing and call setup and control messages. 同样地,经由网元4002将数据分组1002路由到另一个网元4003。 Likewise, the metadata 4002 packet route to network 1002 via network element 4003 to another. 不存在预先建立的路由,取而代之,对于每个数据分组,每个网元各自根据数据分组中所指示的地址来确定网络400中的每个下一跳。 Absence of pre-established routing, instead, for each data packet, each network element to determine each respective next hop network 400 in accordance with the address indicated in the data packet.

[0121] 另一方面,到达的且被容许进入紧急接入网402的数据流502、503被路由到呼叫管理器4001,例如PBX(PBX =专用小交换机),其将数据分组路由到紧急服务应答点60,例如PSAP。 [0121] On the other hand, is allowed to enter and reach the emergency access network 402 is a data stream 502, 503 4001, for example, PBX (PBX = Private Branch Exchange) is routed to a call manager which will route the data packets to an emergency service answering point 60, such as PSAP. 路由是在预先建立的连接上执行的,无需任何信令和控制业务。 Routing is performed on a pre-established connection without any signaling and control traffic.

[0122] 还可能是这样的情况:不管数据分组的实际地址是什么,可将被容许进入紧急接入网402的数据分组的原始目的地地址从数据分组剥离并且用与紧急服务相关联的预先设置的标准地址,例如呼叫管理器4001的IP地址和端口,来替代。 [0122] may also be the case: regardless of the actual address of the data packet that can be admitted to the emergency access network 402, data packets from the original destination address of the data packet and release the emergency service associated with the previously set standard address, for example, the call manager IP address and port 4001, instead. 通过这种标准化的和预先建立的途径,对紧急呼叫的快速可靠应答是可能的。 And by way of this pre-established standardized, rapid and reliable answer emergency calls are possible.

[0123] 图6a到6d示出与对启动紧急呼叫的终端的定位相关的四个不同例子。 [0123] Figures 6a to 6d show four different examples related to the positioning of the terminal starts the emergency call. 在图6a到6d的每幅图中,在终端10、LAN 3的接入点20、DHCP服务器30、定位服务器35、呼叫管理器40和PSAP 60之间传输消息序列。 Each figure in FIG. 6a to 6d, the terminal 10, LAN 3, the access point 20, DHCP server 30, location server 35, a message sequence transmitted between the call manager 40 and the PSAP 60. 定位服务器35上驻留提供将定位信息传输给PSAP的web服务。 Location server resides to provide the positioning information transfer service on web PSAP 35.

[0124] 图6a示出根据第一备选项的与对终端10的定位有关的消息流序列。 [0124] Figure 6a shows a first alternatives to the message flow sequence related to the positioning terminal 10. 在该方法的第一步中,终端10在关联到紧急SSID之后,经由AP 20向定位服务器35发送SOAP送入消息510。 In the first step, the process of the terminal 10 after association to an emergency SSID, AP 20 transmits to the positioning server 35 via the SOAP message 510 sent. SOAP送入消息510包括终端10的定位信息,例如AP 10的BSSID (BSSID =基本服务集标识符),经由其终端有权接入LAN。 SOAP message 510 comprises a location information into the terminal 10, the AP 10 e.g. BSSID (BSSID = Basic Service Set Identifier), a terminal via which the right to access LAN. BSSID是LAN中AP的唯一标识符。 BSSID is a unique identifier of the LAN AP. 在基础设施模式中,IEEE 802. 11-1999无线LAN规范将BSSID定义为标识AP的站点(STA)的MAC地址。 In infrastructure mode, IEEE 802. 11-1999 Wireless LAN specification defines a BSSID of the AP to identify a station (STA) MAC address. 因此,BSSID唯一地标识每个AP,其对区分具有相同SSID的AP是不可缺少的。 Thus, BSSID uniquely identifies each AP, which the AP having the same SSID distinction is indispensable.

[0125] 定位服务器35通过充当请求510的确认的回复511来进行响应。 [0125] The location server 35 responds by acting as a reply request acknowledgment 510 511. 如果终端10在发送SOAP请求消息510后的某个时间段内没接收到任何回复,则终端10可重新发送SOAP请求消息510。 If the terminal 10 does not receive a certain period of time after any reply message 510 to send the SOAP request, the terminal 10 may send the SOAP request message 510 again.

[0126] 当呼叫管理器40 —注意到紧急呼叫,呼叫管理器就开始通过向定位服务器35发送轮询消息512来定期地轮询定位服务器35。 [0126] When the call manager 40 - Send a polling message 512 to the positioning server 35 periodically poll noted that an emergency call, the call manager starts by the positioning server 35. 轮询消息512触发定位服务器35来向呼叫管理器40报告与终端10的定位信息有关的任何更新信息。 Polling message 512 triggers the positioning server 35 to the terminal 40 reports the location information 10 relating to any updated information to the call manager. 定位服务器35总是用定位信息做出响应。 Location server 35 always responds with location information. 定位服务器35通过发送回复513对轮询消息512做出响应。 Location server 35 replies by sending a polling message 513 pairs 512 responds. 回复513包括关于终端位置的更新信息或者只包括指示了没有更新信息可用的指示。 Reply 513 includes updated information on the terminal or only the location update instruction indicating that no information is available. 呼叫管理器40将简单地将所获取的定位信息作为消息514转发给PSAP60,或者将对所获取的定位信息进行处理并接着将经处理的定位信息作为消息514发送给PSAP 60。 The call manager 40 will simply as the acquired location information message 514 is forwarded to PSAP60, or the acquired positioning information will be processed and then transmits the processed location information to the PSAP 60 as message 514.

[0127] 例如,定位服务器35可例如通过包括BSSID和LAN的AP的相应位置的数据库,将定位信息的AP BSSID翻译成地理坐标。 [0127] For example, the positioning server 35 may comprise, for example, through a database and the LAN the AP BSSID corresponding position, the AP BSSID of the localization information translated into geographical coordinates. 呼叫管理器接着将地理坐标发送给PSAP 60,其中可以向所指示的地理位置发送协助。 Call manager then sends the geographic coordinates to the PSAP 60, which may be sent to the location indicated by the assistance.

[0128] 图6b示出根据第二备选项的与对终端10的定位有关的消息流序列。 [0128] Figure 6b shows a second alternatives to the message flow sequence related to the positioning terminal 10. 步骤520到521对应于参考图6a所描述的步骤510和511。 Steps 520-521 correspond to steps described with reference to FIG. 6a 510 and 511. 上面所给出的相应的描述也应用于图6b。 The corresponding description given above also applies to FIG. 6b.

[0129] 在定位服务器35已经从终端10接收到定位信息或定位信息的更新并且优选地已经向终端10发送回复521之后,定位服务器35通过消息522将定位信息送入呼叫管理器40。 After [0129] In the positioning server 35 has received from the terminal 10 to update location information or location information has been transmitted and is preferably 521 replies to the terminal 10, the positioning server 35 by the positioning information into the message 522 the call manager 40. 响应于消息522,呼叫管理器40发送回复消息523用于向定位服务器35进行确认。 In response to message 522, the call manager 40 sends a reply message 523 for acknowledgment to the positioning server 35.

[0130] 如参考图6a所描述的那样,呼叫管理器40将简单地将所获取的定位信息作为消息524转发给PSAP 60,或者将对所获取的定位信息进行处理并接着将经处理的定位信息作为消息524发送给PSAP 60。 [0130] As described with reference to Figure 6a, the call manager 40 will simply acquired positioning information as the positioning information message 524 forwarded to the PSAP 60, the acquired or will be processed and then the processed positioning information to the PSAP 60 as message 524.

[0131] 图6c示出根据第三备选项的与对终端10的定位有关的消息流序列。 [0131] Figure 6c shows a third alternatives the message flow sequence related to the positioning terminal 10. 在该方法的第一步中,终端10在关联到紧急SSID之后经由AP 20向呼叫管理器40发送SOAP请求消息530。 In the first step of the method, the terminal 10 transmits a SOAP request message 530 AP 20 to the call manager 40 via after association to an emergency SSID. SOAP请求消息510包括终端10的定位信息,例如AP 10的BSSID (BSSID =基本服务集标识符),经由其终端有权接入LAN。 SOAP request message 510 comprises localization information of the terminal 10, the AP 10 e.g. BSSID (BSSID = Basic Service Set Identifier), a terminal via which the right to access LAN.

[0132] 呼叫管理器40用充当请求530的确认的回复531来进行响应。 [0132] The call manager 40 responds with a confirmation request 530 serving as a reply 531. 如果终端10在发送SOAP请求消息530后的某个时间段内没接收到任何回复,则终端10可向呼叫管理器40重新发送SOAP请求消息530。 If the terminal 10 does not receive a certain period of time after any reply message 530 to send the SOAP request, the terminal 10 can re-send the SOAP request message 40 to the call manager 530.

[0133] 当呼叫管理器4 0已经从终端10接收到定位信息或定位信息的更新并且优选地已经向终端10发送回复531之后,呼叫管理器40将如参考图6a所描述的那样,简单地将所获取的定位信息作为消息532转发给PSAP 60,或者将对所获取的定位信息进行处理并接着将经处理的定位信息作为消息532发送给PSAP 60。 [0133] When the call manager 40 has received from the terminal 10 to update location information or location information, and preferably has transmitted the reply to the terminal 10 after 531, the call manager 40 as described with reference to FIG 6a described above, simply the acquired location information is forwarded as message 532 to the PSAP 60, or the acquired positioning information will be processed and then transmits the processed location information to the PSAP 60 as message 532.

[0134] 图6d示出根据第四备选项的与对终端10的定位有关的消息流序列。 [0134] FIG. 6d shows a fourth alternatives to the message flow sequence related to the positioning terminal 10. 在该方法的第一步中,终端10在关联到紧急SSID之后向DHCP服务器30发送DHCP更新请求540。 In the first step of the method, the terminal 10 sends a DHCP request 540 to the DHCP server updates 30 after association to an emergency SSID. DHCP更新请求540包括终端10的定位信息,例如AP 10的BSSID (BSSID =基本服务集标识符),经由其终端有权接入LAN。 DHCP 540 includes a location information update request terminal 10, the AP 10 e.g. BSSID (BSSID = Basic Service Set Identifier), a terminal via which the right to access LAN.

[0135] 对于进一步的处理,我们有两个选项。 [0135] For further processing, we have two options. DHCP服务器30或者向定位服务器35发送SOAP消息541,或者向呼叫管理器40发送SOAP消息546。 DHCP server 30 or 35 to the positioning server 541 transmits the SOAP message, or send a SOAP message 546 to the call manager 40.

[0136] 在第一种情况下,可以或者通过来自呼叫管理器的优选定期的轮询消息542和来自定位服务器35的相应的回复543,或者通过一旦定位服务器35已经接收到SOAP消息541就借助来自定位服务器35的消息544将定位信息送入呼叫管理器40,将定位信息传输给呼叫管理器40。 [0136] In the first case, or preferably by periodically polling message 542 from the call manager and corresponding reply 543 from the positioning server 35, or by the positioning server 35 has once received by the SOAP message 541 message 544 from the positioning server 35 of the location information into the call manager 40, the positioning information is transmitted to the call manager 40. 此外,呼叫管理器40可以用确认回复545对消息544做出响应。 Further, the call manager 40 may respond with an acknowledgment message 544 responds 545 pairs.

[0137] 在呼叫管理器40已经从定位服务器35接收到定位信息之后,呼叫管理器40将如参考图6a所描述的那样,简单地将所获取的定位信息作为消息547转发给PSAP 60,或者将对所获取的定位信息进行处理并接着将经处理的定位信息作为消息547发送给PSAP 60。 [0137] After the call manager 40 has received from the positioning server 35 the location information, the call manager 40 as described with reference to FIG 6a described above, simply on the acquired location information as a message 547 forwarded to the PSAP 60, or the acquired positioning information will be processed and then transmits the processed location information to the PSAP 60 as message 547.

[0138] 在后一种情况下,其中DHCP服务器30直接将SOAP消息546发送给呼叫管理器40,呼叫管理器40将再次将所获取的原始定位信息或者经处理的定位信息作为消息547转发给PSAP 60。 [0138] In the latter case, the DHCP server 30 sends the SOAP message 546 directly to the call manager 40, the call manager 40 will again be the original location information or position information acquired as the processed message 547 is forwarded to PSAP 60. [0139] 可以用任何可能的组合来执行所描述的方法备选项和选项。 [0139] The method can be used in any possible combination to perform the described alternatives and options. 因此,针对单个方法备选项所描述的步骤可以与另一方法备选项的步骤进行组合以实现本发明的目的。 Thus, alternatives for a single step process described may be combined with steps of another method for alternatives to achieve the object of the present invention. 例如,可以将权利要求1、8、10和13彼此组合起来。 For example, 8, 10 and 13 may be combined with each other claims.

Claims (8)

1. 一种为终端提供通过WLAN紧急接入LAN的方法,所述LAN包括一个或多个接入点和接入控制功能,所述接入控制功能容许来自与第一服务设置标识符SSID相关联的WLAN用户的数据分组进入所述LAN,其中所述方法包括以下步骤: 定义专用于允许在紧急情况下接入所述LAN的一个或多个紧急SSID ; 通过从与从所述一个或多个紧急SSID中选择的紧急SSID相关联的终端向所述一个或多个接入点之一发送数据分组来启动紧急呼叫,其中由所述终端用经由DHCP请求接收的目的地地址对所述数据分组进行编址; 通过所述接入控制功能容许来自与所选紧急SSID相关联的所述终端的所述数据分组进入所述LAN;以及在容许与所选紧急SSID相关联的所述数据分组进入所述LAN之后,将与所选紧急SSID相关联的所述数据分组路由到紧急应答点; 其中由所述终端用经由DHCP请求接收的目的地地址 1. A method of providing emergency access over a WLAN to a LAN terminal, the LAN comprises one or more access points and an access control function, said access control function from the first allowable service set identifier associated SSID WLAN user data packets into the associated LAN, wherein said method comprises the steps of: defining specific to allow access to the LAN in an emergency case where a plurality of emergency or the SSID; from the through or from a emergency SSID selected emergency SSID associated with the terminal to transmit a data of the one or more access points to start the emergency call packets, wherein by the terminal via a DHCP request with a destination address of the received data packets addressed; allowed by the access control function with the selected emergency SSID from the data packets of the terminal into the associated the LAN; and allowing said data packet with the selected emergency SSID associated after entering the LAN, connect with the data packet routing selected emergency SSID associated to the emergency answering point; wherein by the terminal with a destination address received via the DHCP request 所述数据分组进行编址包括:由所述终端请求特殊的DHCP选项,所述选项将为所述终端提供呼叫管理器的IP地址和所述呼叫管理器正在监听的端口,所述呼叫管理器负责管理通向紧急应答点的紧急呼叫的建立; 由所述终端通过DHCP从DHCP服务器接收所述呼叫管理器的IP地址和所述呼叫管理器正在监听的端口;以及在与所选紧急SSID相关联的所述终端处用所述接收到的所述呼叫管理器的IP地址和所述呼叫管理器正在监听的端口对数据分组进行编址。 The addressed data packet comprises: requesting by the terminal specific DHCP options, the option port will provide the terminal IP address of the call manager and the call manager is listening, the call manager manage emergency answering point leads to the establishment of an emergency call; by the terminal by DHCP receiving the call manager from the DHCP server and the IP address of the call manager is listening on the port; and associated with the selected emergency SSID the call manager at the terminal associated with the received IP address and the call manager is listening on the port data packets addressed.
2.根据权利要求1所述的方法,其中所述方法还包括步骤: 将所述紧急SSID中的两个或多个紧急SSID与不同的能力进行关联;以及基于从一个或多个紧急SSID的广播中提取的信息来选择紧急SSID。 2. The method according to claim 1, wherein said method further comprises the step of: the two or more emergency SSID with the SSID different capabilities emergency associating; and based on the SSID of the one or more emergency information extracted from broadcast to selected emergency SSID.
3.根据权利要求2所述的方法,其中,将所述紧急SSID中的两个或多个紧急SSID与不同的编解码和组帧进行关联。 The method according to claim 2, wherein the two emergency SSID or more emergency SSID with different codecs and framing associate.
4.根据权利要求1-3任一项所述的方法,其中所述方法还包括步骤: 通过使用业务规范过程或抢先权过程来区分所述紧急呼叫的优先级次序。 4. The method according to any one of claims 1-3, wherein said method further comprises the step of: prioritization of the emergency call by using a traffic specification procedure or pre-emption procedure.
5.根据权利要求1-3任一项所述的方法,其中所述方法还包括步骤: 从所述一个或多个接入点中的至少之一广播所述一个或多个紧急SSID ; 由所述终端检测所述一个或多个广播的紧急SSID中的至少之一; 从所述至少一个检测到的紧急SSID中选择紧急SSID ;以及由所述终端关联到所选的紧急SSID。 The method according to any one of claims 1-3, wherein said method further comprises the step of: said at least one of a broadcast from the one or more access points or more emergency the SSID; a the terminal detects at least one of the one or more broadcast emergency SSID in; an emergency SSID from the at least one detected emergency SSID selected; and the association by the terminal to the selected emergency SSID.
6.根据权利要求5所述的方法,其中所述方法还包括步骤: 在检测所述一个或多个紧急SSID中的所述至少之一之后,在所述终端处输出通告以通知所述终端的用户:对所述WLAN的紧急接入是可用的。 6. The method according to claim 5, wherein said method further comprises the step of: after said detecting of the one or more emergency SSID to at least one of the advertisement output terminal to notify the terminal user: an emergency access to the WLAN is available.
7. 一种用于为终端提供通过WLAN紧急接入LAN的通信系统,所述通信系统包括接入控制功能,所述接入控制功能容许来自与第一SSID相关联的WLAN用户的数据分组进入所述LAN,其中所述通信系统包括:适于接收来自与从至少一个检测到的紧急SSID中选择的紧急SSID相关联的终端的数据分组的接口;适于将从与所选紧急SSID相关联的所述终端接收到的所述数据分组转发到所述接入控制功能的控制单元,其中所述接入控制功能容许来自与所选紧急SSID相关联的所述终端的所述数据分组进入所述LAN,并且其中所述通信系统适于在容许来自与所选紧急SSID相关联的所述终端的所述数据分组进入所述LAN之后,将其路由到紧急应答点,其中所述数据分组携带在所述终端处通过DHCP请求从所述通信系统接收到的目的地地址, 其中所述通信系统还包括:呼叫管理器,负责管理向紧 A terminal for providing emergency access over a WLAN LAN communication system, the communication system comprising an access control function, said access control functions allow the SSID WLAN from a first user data packet into the associated the LAN, wherein said communication system comprising: an interface adapted to receive data from the terminal associated with an emergency SSID selected from the at least one detected emergency SSID to the packet; adapted from the selected emergency SSID associated the data packet received by the terminal is forwarded to the control unit of the access control function, wherein the access control function allowing the data packets from the terminal associated with the selected emergency SSID to enter the after the LAN described below, and wherein said communication system is adapted to allow the data from the terminal associated with the selected emergency SSID packets entering the LAN, connect routed to the emergency answering point, wherein the data packets carry a at the terminal a request received from the destination address to the communication system via DHCP, wherein said communication system further comprising: a call manager, is responsible for managing the tight 急应答点的紧急呼叫的建立;以及DHCP服务器,适于响应于所述终端请求特殊的DHCP选项,利用DHCP为所述终端提供所述呼叫管理器的IP地址和所述呼叫管理器正在监听的端口,以便在与所选紧急SSID相关联的所述终端处利用所提供的所述呼叫管理器的IP地址和所述呼叫管理器正在监听的端口对数据分组进行编址。 Establishing an emergency call emergency answering point; and a DHCP server, in response to the terminal is adapted to request a special DHCP option, the call manager provides for the use of DHCP IP address of the terminal and the call manager is listening port, to the call manager using the provided at the terminal associated with the selected emergency SSID and IP address of the call manager is listening on the port data packets addressed.
8.根据权利要求7所述的通信系统,其中所述通信系统还包括发送器,适于向所述终端广播专用于允许在紧急情况下接入所述LAN的一个或多个紧急SSID。 8. The communication system according to claim 7, wherein said communication system further comprises a transmitter adapted to broadcast to the terminal dedicated to allow access to the LAN in an emergency or more emergency SSID.
CN2007101077689A 2006-04-29 2007-04-29 Method of providing a guest terminal with emergency access to a wlan CN101064655B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
EP06360015.9 2006-04-29
EP06360015A EP1850532B1 (en) 2006-04-29 2006-04-29 Method of providing a guest terminal with emergency access over a WLAN

Publications (2)

Publication Number Publication Date
CN101064655A CN101064655A (en) 2007-10-31
CN101064655B true CN101064655B (en) 2013-04-24

Family

ID=36780758

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2007101077689A CN101064655B (en) 2006-04-29 2007-04-29 Method of providing a guest terminal with emergency access to a wlan

Country Status (9)

Country Link
US (1) US7877785B2 (en)
EP (1) EP1850532B1 (en)
JP (1) JP4913209B2 (en)
KR (1) KR101226042B1 (en)
CN (1) CN101064655B (en)
AT (1) AT551799T (en)
ES (1) ES2381392T3 (en)
PL (1) PL1850532T3 (en)
WO (1) WO2007124987A1 (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106130866A (en) * 2016-08-01 2016-11-16 浪潮(苏州)金融技术服务有限公司 A kind of autonomous cut-in method of lan device realized based on UDP

Families Citing this family (67)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8682279B2 (en) * 2004-05-07 2014-03-25 Interdigital Technology Corporation Supporting emergency calls on a wireless local area network
CN101296509B (en) * 2007-04-28 2012-12-12 华为技术有限公司 Method, system and related device for implementing urgent communication service
US20080281696A1 (en) 2007-05-11 2008-11-13 Verizon Services Organization Inc. Systems and methods for using dns records to provide targeted marketing services
JP2009219076A (en) * 2008-03-13 2009-09-24 Nec Corp Gateway router and priority control method of emergency call in ip telephone system
DE102008017136B4 (en) * 2008-04-03 2013-01-31 Siemens Aktiengesellschaft Device for providing a service for a mobile terminal via a WLAN connection
US9148769B2 (en) * 2008-05-07 2015-09-29 Qualcomm Incorporated System, apparatus and method to enable mobile stations to identify calls based on predetermined values set in a call header
CN102165460A (en) * 2008-08-20 2011-08-24 韦尔普罗有限责任公司 Data packet generator for generating passcodes
US20100115600A1 (en) * 2008-11-05 2010-05-06 Appsware Wireless, Llc Method and system for securing data from an external network to a point of sale device
US20100115127A1 (en) * 2008-11-05 2010-05-06 Appsware Wireless, Llc Method and system for securing data from a non-point of sale device over a lan
US20100114723A1 (en) * 2008-11-05 2010-05-06 Appsware Wireless, Llc Method and system for providing a point of sale network within a lan
US20100115624A1 (en) * 2008-11-05 2010-05-06 Appsware Wireless, Llc Method and system for securing data from a point of sale device over a lan
US20100115599A1 (en) * 2008-11-05 2010-05-06 Appsware Wireless, Llc Method and system for securing data from a point of sale device over an external network
US8732813B2 (en) * 2008-11-05 2014-05-20 Apriva, Llc Method and system for securing data from an external network to a non point of sale device
US8966610B2 (en) * 2008-11-05 2015-02-24 Apriva, Llc Method and system for securing data from a non-point of sale device over an external network
US9215576B2 (en) 2008-12-26 2015-12-15 Nec Corporation Communication system, femto base station, call session control server, home subscriber server, communication method, and program
CN101730038A (en) * 2009-04-29 2010-06-09 中兴通讯股份有限公司 Method for implementing emergency service and home base station
CN101931954B (en) * 2009-06-22 2013-02-27 南京中兴软件有限责任公司 Method for improving quality of service (QoS) of real-time service in wireless local area network based on service differentiation
CN102118372B (en) * 2009-12-31 2013-07-10 深圳市多尼卡电子技术有限公司 System and method for providing non-realtime Internet services
US8955054B2 (en) * 2010-01-06 2015-02-10 Qualcomm Incorporated Method and apparatus for providing simultaneous support for multiple master keys at an access point in a wireless communication system
EP2405678A1 (en) 2010-03-30 2012-01-11 British Telecommunications public limited company System and method for roaming WLAN authentication
EP2373075A1 (en) 2010-03-30 2011-10-05 British Telecommunications public limited company System and method for WLAN traffic monitoring
US9689988B1 (en) * 2010-06-03 2017-06-27 8X8, Inc. Systems, methods, devices and arrangements for emergency call services and emergency broadcasts
RU2564251C2 (en) * 2010-09-16 2015-09-27 Нокиа Корпорейшн Dynamic creation of account in protected network with wireless access point
CN102457907B (en) * 2010-10-25 2015-07-29 上海贝尔股份有限公司 Centralized WLAN client type identifying apparatus and method
US9763140B2 (en) * 2010-11-02 2017-09-12 Cisco Technology, Inc. Resource reservation on networks comprising wireless and wired segments
JP2012182743A (en) * 2011-03-02 2012-09-20 Toshiba Tec Corp Electronic apparatus, communication system, and program
JP5655672B2 (en) * 2011-03-31 2015-01-21 富士通株式会社 Program, information communication device and linkage method
US8869259B1 (en) * 2011-05-19 2014-10-21 Zscaler, Inc. Cloud based inspection of secure content avoiding man-in-the-middle attacks
KR101453521B1 (en) 2011-05-20 2014-10-24 주식회사 케이티 Wireless access point apparatus and method for detecting unauthorized wireless lan node
WO2012161386A1 (en) * 2011-05-20 2012-11-29 주식회사 케이티 Wireless access point device and method for detecting unauthorized wireless lan node
US8769023B2 (en) * 2011-08-03 2014-07-01 Juniper Networks, Inc. Disaster response system
US8856290B2 (en) * 2011-10-24 2014-10-07 General Instrument Corporation Method and apparatus for exchanging configuration information in a wireless local area network
MY161907A (en) * 2011-12-23 2017-05-15 Telekom Malaysia Berhad System and method for providing multiple identifiers in a single access point
CN103379586B (en) * 2012-04-24 2018-09-28 华为终端(东莞)有限公司 A kind of method and website, access point finding access point
CN102821355A (en) * 2012-05-15 2012-12-12 扬州易游物联网络科技有限公司 Simple method for positioning users by wireless local area network
US10129751B2 (en) * 2012-05-25 2018-11-13 Comcast Cable Communications, Llc Wireless gateway supporting public and private networks
CN103517383B (en) * 2012-06-18 2017-04-12 华为终端有限公司 A method and a device for the access of a mobile terminal to a household network
JP5912913B2 (en) * 2012-06-26 2016-04-27 アルパイン株式会社 Car equipment
US9565622B2 (en) * 2012-07-05 2017-02-07 Qualcomm Incorporated Detecting services provided by a wireless node before device discovery and connection establishment
CN104854890A (en) * 2012-12-13 2015-08-19 富士通株式会社 The wireless communication system
US8930044B1 (en) 2012-12-28 2015-01-06 Google Inc. Multi-part navigation process by an unmanned aerial vehicle for navigating to a medical situatiion
US8909391B1 (en) 2012-12-28 2014-12-09 Google Inc. Responsive navigation of an unmanned aerial vehicle to a remedial facility
US9051043B1 (en) 2012-12-28 2015-06-09 Google Inc. Providing emergency medical services using unmanned aerial vehicles
US8983682B1 (en) 2012-12-28 2015-03-17 Google Inc. Unlocking mobile-device and/or unmanned aerial vehicle capability in an emergency situation
US8948935B1 (en) 2013-01-02 2015-02-03 Google Inc. Providing a medical support device via an unmanned aerial vehicle
GB2511313A (en) * 2013-02-27 2014-09-03 Sony Corp A relay device, method and computer program
CN104427587A (en) * 2013-08-23 2015-03-18 联想移动通信科技有限公司 Connection method for wireless local area network access point, and mobile equipment
US9686819B2 (en) 2013-09-24 2017-06-20 Xiaomi Inc. Methods, devices and systems for router access control
CN103501482A (en) * 2013-09-26 2014-01-08 小米科技有限责任公司 Network access method, network access device and terminal
DE102014202758A1 (en) * 2014-02-14 2015-08-20 Fraunhofer-Gesellschaft zur Förderung der angewandten Forschung e.V. Method, apparatus and wireless network environment for exchanging data
JP6330445B2 (en) * 2014-04-17 2018-05-30 株式会社バッファロー Communications system
US10239638B1 (en) 2014-05-10 2019-03-26 Wing Aviation Llc Home station for unmanned aerial vehicle
JP5915712B2 (en) * 2014-09-30 2016-05-11 富士通株式会社 Control program, control device, and control method
US9923814B2 (en) * 2015-02-17 2018-03-20 Huawei Technologies Co., Ltd. Media access control address resolution using internet protocol addresses
US9832791B2 (en) 2015-08-04 2017-11-28 Network Performance Research Group Llc Method and apparatus for use of simultaneous multiple channels in the dynamic frequency selection band in wireless networks
US9807625B2 (en) 2015-08-10 2017-10-31 Network Performance Research Group Llc Method and apparatus for using time shifted analysis based on gathering non-encrypted information from packets
US20170048728A1 (en) * 2015-08-10 2017-02-16 Network Performance Research Group Llc Method and apparatus for directed adaptive control of access point-to-client interaction in wireless networks
US9439197B1 (en) 2015-08-10 2016-09-06 Planetary Network Technologies, Inc. Method and apparatus for directed adaptive control of dynamic channel selection in wireless networks
US9924518B2 (en) 2015-08-10 2018-03-20 Network Performance Research Group Llc Method and apparatus for dynamic channel selection device
US10104665B2 (en) 2015-08-10 2018-10-16 Network Performance Research Group Llc Method and apparatus for providing dynamic frequency selection spectrum access in peer-to-peer wireless networks
CN105263099B (en) * 2015-08-28 2018-10-12 小米科技有限责任公司 The method and apparatus for sending location information
US10368247B2 (en) 2015-11-25 2019-07-30 Network Performance Research Group Llc Cloud DFS super master detector location systems and methods
US9930670B2 (en) 2015-11-25 2018-03-27 Network Performance Research Group Llc System, method, and apparatus for setting device geolocation via location proxies
US9839038B2 (en) 2015-11-25 2017-12-05 Network Performance Research Group Llc System, method, and apparatus for setting a regulatory operating mode of a device
CN108141758A (en) * 2015-12-09 2018-06-08 惠普发展公司有限责任合伙企业 Connectionless data transmission
US20180026857A1 (en) * 2016-07-20 2018-01-25 Level 3 Communications, Llc Dynamic service provisioning system and method
US9867217B1 (en) * 2016-12-30 2018-01-09 T-Mobile Usa, Inc. Emergency call setup in wireless networks

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6714536B1 (en) 1998-07-21 2004-03-30 Eric M. Dowling Method and apparatus for cosocket telephony
CN1664872A (en) 2004-03-05 2005-09-07 三星电子株式会社 Emergency call system and a control method

Family Cites Families (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6950628B1 (en) 2002-08-02 2005-09-27 Cisco Technology, Inc. Method for grouping 802.11 stations into authorized service sets to differentiate network access and services
US7835317B2 (en) 2002-10-08 2010-11-16 Nokia Corporation Network selection in a WLAN
US7369859B2 (en) 2003-10-17 2008-05-06 Kineto Wireless, Inc. Method and system for determining the location of an unlicensed mobile access subscriber
US7885644B2 (en) * 2002-10-18 2011-02-08 Kineto Wireless, Inc. Method and system of providing landline equivalent location information over an integrated communication system
US20060078123A1 (en) * 2003-01-09 2006-04-13 Guillaume Bichot Method and apparatus for banding multiple access points
US20040181692A1 (en) 2003-01-13 2004-09-16 Johanna Wild Method and apparatus for providing network service information to a mobile station by a wireless local area network
US7177399B2 (en) 2004-02-27 2007-02-13 Nortel Network Limited Determining the geographical location from which an emergency call originates in a packet-based communications network
US8145182B2 (en) * 2004-05-07 2012-03-27 Interdigital Technology Corporation Supporting emergency calls on a wireless local area network
US20060068799A1 (en) 2004-09-27 2006-03-30 T-Mobile, Usa, Inc. Open-host wireless access system
JP2006101421A (en) * 2004-09-30 2006-04-13 Toshiba Corp Video signal processing circuit
US7433673B1 (en) * 2004-12-17 2008-10-07 Sprint Spectrum L.P. Method and system for providing location information for a wireless local area network (WLAN)
US7496182B2 (en) * 2005-04-15 2009-02-24 Verizon Business Global Llc Handling emergency service calls originating from internet telephony
US20060274729A1 (en) * 2005-06-03 2006-12-07 Michael Self Apparatus and method for connecting a voice over IP telephone subscriber to the 911 emergency network

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6714536B1 (en) 1998-07-21 2004-03-30 Eric M. Dowling Method and apparatus for cosocket telephony
CN1664872A (en) 2004-03-05 2005-09-07 三星电子株式会社 Emergency call system and a control method

Non-Patent Citations (3)

* Cited by examiner, † Cited by third party
Title
FACCIN, EDNEY, BARI.WiNOT TGu proposal for Emergency Services Requirement(IEEE802.11-06/0288R1).IEEE P802.11 Wireless LANs.2006,1-9.
HEPWORTH, MONTEMURRO,RUDOLF.TGu Proposal for E911 support (IEEE802.11-06/280R0).IEEE P802.11 Wireless LANs.2006,1-12.
全文.

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106130866A (en) * 2016-08-01 2016-11-16 浪潮(苏州)金融技术服务有限公司 A kind of autonomous cut-in method of lan device realized based on UDP

Also Published As

Publication number Publication date
CN101064655A (en) 2007-10-31
WO2007124987A1 (en) 2007-11-08
JP2009535948A (en) 2009-10-01
PL1850532T3 (en) 2012-10-31
US7877785B2 (en) 2011-01-25
KR20090008302A (en) 2009-01-21
EP1850532B1 (en) 2012-03-28
KR101226042B1 (en) 2013-01-24
US20080016556A1 (en) 2008-01-17
AT551799T (en) 2012-04-15
JP4913209B2 (en) 2012-04-11
ES2381392T3 (en) 2012-05-25
EP1850532A1 (en) 2007-10-31

Similar Documents

Publication Publication Date Title
RU2518186C2 (en) Handling local direct connection traffic in home base station
EP1563699B8 (en) Seamless roaming between lan access points
US9049042B2 (en) System for providing mobile VoIP
US8335187B2 (en) Routing mobile voice calls
JP4754964B2 (en) Radio network control apparatus and radio network control system
JP5221625B2 (en) System and method for peer-to-peer hybrid communication
CN100379223C (en) System and method for providing two-way communications network transmissions over internet protocol
US7307963B2 (en) Architecture and method for using IEEE 802.11-like wireless LAN system to emulate private land mobile radio system (PLMRS) radio service
ES2389944T3 (en) Procedure and apparatus for synchronizing the encryption and decryption of a data frame in a communication network
US8411594B2 (en) Communication manager for providing multimedia in a group communication network
US7130282B2 (en) Communication device for providing multimedia in a group communication network
EP1929744B1 (en) Wireless voip/vip roaming to access point of different network type
KR101320721B1 (en) Dynamic host configuration and network access authentication
TWI437848B (en) Supporting emergency calls on a wireless local area network
US9112909B2 (en) User and device authentication in broadband networks
EP1410573B1 (en) Methods,apparatus,and systems for accessing mobile and voice over ip telephone networks with a mobile handset
ES2348716T3 (en) Method for controlling parts in a real-time data group communication using receipt acknowledgment packages.
US8761054B2 (en) Method and apparatus for delivering IPP2T (IP-push-to-talk) wireless LAN mobile radio service
US20020150092A1 (en) One-to-one communication
US7529200B2 (en) Method and system for fast setup of group voice over IP communications
US7688820B2 (en) Classification for media stream packets in a media gateway
CN100579313C (en) Apparatus and method for extending the coverage area of a licensed wireless communication system using an unlicensed wireless communication system
RU2308812C2 (en) Communication in selected area
JP4065448B2 (en) Wireless local network with clients with extended mobility
JP2007259507A (en) Prevention of spoofing in telecommunications systems

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant